Fórum PC Brasil
Gostaria de reagir a esta mensagem? Crie uma conta em poucos cliques ou inicie sessão para continuar.
Flux RSS


Yahoo! 
MSN 
AOL 
Netvibes 
Bloglines 


Social bookmarking

Social bookmarking reddit      

Conservar e compartilhar o endereço de PC Seguro em seu site de social bookmarking

Conservar e compartilhar o endereço de Fórum PC Brasil em seu site de social bookmarking

Estatísticas
Temos 14810 usuários registrados
O último membro registrado é Josevinil

Os nossos membros postaram um total de 36047 mensagens em 3685 assuntos
Últimos assuntos
» Problema no disco rígido do Windows 11
por joram Seg 01 Abr 2024, 06:35

Quem está conectado?
22 usuários online :: 0 registrados, 0 invisíveis e 22 visitantes

Nenhum

O recorde de usuários online foi de 301 em Ter 26 Out 2021, 15:28
Procurar
 
 

Resultados por:
 


Rechercher Pesquisa avançada

abril 2024
SegTerQuaQuiSexSábDom
1234567
891011121314
15161718192021
22232425262728
2930     

Calendário Calendário


Uso de CPU chega a 100%

2 participantes

Ir para baixo

Uso de CPU chega a 100% Empty Uso de CPU chega a 100%

Mensagem por Pedro Silva Seg 13 Jan 2014, 01:28

Após fazer uma varredura com o programa combofix o meu pc voltou ao normal (pelo menos foi o que pensei). Minha situação é essa:Toda vez que uso algum browser (Qualquer um) pra ver vídeo (especificamente animes) o PC voa pro 100 % muito rápido e quando minimizo ou fecho ele volta ao normal. Se alguém puder me ajudar fico agradecido. Smile
Pedro Silva
Pedro Silva
Iniciante
Iniciante

Mensagens : 8
Reputação : 0
Data de inscrição : 11/01/2014

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Power Max Seg 13 Jan 2014, 09:48

Uso de CPU chega a 100% 648673379 Olá Pedro Silva! Seja bem vindo ao Fórum PC Brasil.

Uso de CPU chega a 100% 772309 Faça o download do [Tens de ter uma conta e sessão iniciada para poderes visualizar este link].

*Execute-o e clique no botão Main Menu.

* Na próxima tela que surgirá clique em [Do a system scan and save a logfile].

*Um relatório será apresentado.

*Selecione todo o conteúdo deste relatório e copie (Ctrl+c).

Depois disso é só voltar aqui no fórum e postar este log do Hijackthis para que ele possa ser analisado.

Ficamos no aguardo de sua resposta.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Pedro Silva Ter 14 Jan 2014, 22:34

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:32:44, on 14/01/2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\Users\admin\AppData\Local\WebPlayer\Free Mahjong Games\WebPlayer.exe
C:\Users\admin\AppData\Local\Smartbar\Application\SnapDo.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\admin\AppData\Local\Akamai\netsession_win.exe
C:\Program Files (x86)\DAP\DAP.exe
C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe
C:\Users\admin\AppData\Local\Akamai\netsession_win.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\admin\Downloads\HijackThis.exe
C:\Program Files (x86)\Mobogenie\mgusb.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll
O2 - BHO: SaveSense - {0f21b1e5-5afc-43c9-9c66-515046e92ec2} - C:\Program Files (x86)\SaveSense\SaveSenseIE.dll (file missing)
O2 - BHO: CrossriderApp0032154 - {11111111-1111-1111-1111-110311211154} - C:\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-bho.dll
O2 - BHO: Snap.DoEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - mscoree.dll (file missing)
O2 - BHO: DealPly Shopping - {3728ba43-f94f-42a4-9e8d-00b930d1db28} - C:\Program Files (x86)\DealPly\DealPlyIE.dll (file missing)
O2 - BHO: DealPly Shopping - {4B6ACEA2-308A-4876-AD36-57CEC5B4FCC7} - C:\Program Files (x86)\DealPly\DealPlyIE.dll (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Wajam IE BHO - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - C:\Program Files (x86)\Wajam\IE\priam_bho.dll
O2 - BHO: MinibarBHO - {AA74D58F-ACD0-450D-A85E-6C04B171C044} - C:\Program Files (x86)\Minibar\Minibar.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.16.16\bh\delta.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O2 - BHO: IEExtension.Extension - {d40c654d-7c51-4eb3-95b2-1e23905c2a2d} - mscoree.dll (file missing)
O2 - BHO: LinkVerifierBHO - {D5974A72-C81C-4DC3-BE77-A8A7BBC8864E} - C:\Program Files (x86)\DAP\LinkVerifier.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: DealPly - {EF7BD87A-8024-11E2-F316-F3E56188709B} - C:\Program Files (x86)\DealPly\DealPlyIE.dll (file missing)
O2 - BHO: PricePeep - {FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} - C:\Program Files (x86)\PricePeep\pricepeep.dll (file missing)
O2 - BHO: BonanzaDeals - {fe063412-bea4-4d76-8ed3-183be6220d17} - C:\Program Files (x86)\BonanzaDeals\BonanzaDealsIE.dll
O3 - Toolbar: Snap.Do - {ae07101b-46d4-4a98-af68-0333ea26e113} - mscoree.dll (file missing)
O3 - Toolbar: Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.16.16\deltaTlbr.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Aeria Ignite] "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [Free Mahjong Games] C:\Users\admin\AppData\Local\WebPlayer\Free Mahjong Games\WebPlayer.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Online Weather] C:\Users\admin\AppData\Local\WebPlayer\Online Weather\WebPlayer.exe
O4 - HKCU\..\Run: [Browser Infrastructure Helper] C:\Users\admin\AppData\Local\Smartbar\Application\SnapDo.exe startup
O4 - HKCU\..\Run: [WiFi Protector] C:\Program Files (x86)\WiFi Protector\WiFiProtLauncher.exe
O4 - HKCU\..\Run: [NextLive] C:\Windows\SysWOW64\rundll32.exe "C:\Users\admin\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
O4 - HKCU\..\Run: [Device Doctor] C:\Program Files (x86)\Device Doctor\DDLauncher.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\admin\AppData\Local\Akamai\netsession_win.exe"
O4 - HKCU\..\Run: [DownloadAccelerator] "C:\Program Files (x86)\DAP\DAP.EXE" /STARTUP
O4 - HKCU\..\Run: [Memory Improve Master] C:\Program Files (x86)\Memory Improve Master\MemoryImproveMaster.exe /autorun
O4 - Global Startup: CodeMeter Control Center.lnk = C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
O8 - Extra context menu item: &Download with &DAP - C:\Program Files (x86)\DAP\dapextie.htm
O8 - Extra context menu item: &Verify with DAP - C:\Program Files (x86)\DAP\dapverify.htm
O8 - Extra context menu item: Download &all with DAP - C:\Program Files (x86)\DAP\dapextie2.htm
O8 - Extra context menu item: E&xportar para o Microsoft Excel - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
O9 - Extra button: Visit AppsHat.com - {AAA38851-3CFF-475F-B5E0-720D3645E4A5} - C:\Program Files (x86)\Minibar\Minibar.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: Axiom Audio Device Monitor (AxiomAudioDevMon) - M-Audio - C:\Program Files (x86)\M-Audio\Axiom\AudioDevMon.exe
O23 - Service: Serviço do BonanzaDealsLive (bonanzadealslive) (bonanzadealslive) - BonanzaDeals - C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe
O23 - Service: Serviço do BonanzaDealsLive (bonanzadealslivem) (bonanzadealslivem) - BonanzaDeals - C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) - WIBU-SYSTEMS AG - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
O23 - Service: Disc Soft Bus Service - Disc Soft Ltd - C:\Program Files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Serviço do Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Serviço do Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PirritUpdater - Unknown owner - C:\Program Files (x86)\Pirrit\AutoUpdater.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: WajamUpdater - Wajam - C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WiFi Protector Service (wifiProtService) - Unknown owner - C:\Program Files (x86)\WiFi Protector\wifiProtService.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
Pedro Silva
Pedro Silva
Iniciante
Iniciante

Mensagens : 8
Reputação : 0
Data de inscrição : 11/01/2014

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Power Max Ter 14 Jan 2014, 22:39

Seu PC está com vários adwares.

Uso de CPU chega a 100% 772309 Siga, por gentileza, as dicas do tutorial abaixo:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste, por gentileza, o log do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt

Ficamos na espera.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Pedro Silva Qua 15 Jan 2014, 12:22

# AdwCleaner v3.017 - Relatório criado 15/01/2014 às 12:09:06
# Atualizado 12/01/2014 por Xplode
# Sistema Operacional : Windows 7 Enterprise Service Pack 1 (64 bits)
# Usuário : admin - ADMIN-PC
# Executando de : C:\Users\admin\Desktop\adwcleaner.exe
# Opção : Limpar

***** [ Serviços ] *****

[#] Serviço Deletada : bonanzadealslive
[#] Serviço Deletada : bonanzadealslivem
[#] Serviço Deletada : PirritUpdater
Serviço Deletada : WajamUpdater

***** [ Arquivos / Pastas ] *****

Pasta Deletada : C:\ProgramData\Ask
Pasta Deletada : C:\ProgramData\Babylon
Pasta Deletada : C:\ProgramData\baidu
Pasta Deletada : C:\ProgramData\BonanzaDealsLive
Pasta Deletada : C:\ProgramData\SweetIM
Pasta Deletada : C:\ProgramData\Tarma Installer
Pasta Deletada : C:\ProgramData\YoutubeAdblocker
Pasta Deletada : C:\Program Files (x86)\Ask.com
Pasta Deletada : C:\Program Files (x86)\baidu
Pasta Deletada : C:\Program Files (x86)\BonanzaDeals
Pasta Deletada : C:\Program Files (x86)\BonanzaDealsLive
Pasta Deletada : C:\Program Files (x86)\Delta
Pasta Deletada : C:\Program Files (x86)\FilesFrog Update Checker
Pasta Deletada : C:\Program Files (x86)\Gophoto.it
Pasta Deletada : C:\Program Files (x86)\Iminent
Pasta Deletada : C:\Program Files (x86)\Minibar
Pasta Deletada : C:\Program Files (x86)\Mobogenie
Pasta Deletada : C:\Program Files (x86)\Pirrit
Pasta Deletada : C:\Program Files (x86)\Plus-HD-1.7
Pasta Deletada : C:\Program Files (x86)\SweetIM
Pasta Deletada : C:\Program Files (x86)\sweetpacks bundle uninstaller
Pasta Deletada : C:\Program Files (x86)\TornTV.com
Pasta Deletada : C:\Program Files (x86)\Wajam
Pasta Deletada : C:\Program Files (x86)\Web Cake
Pasta Deletada : C:\Program Files (x86)\WebCake
Pasta Deletada : C:\Program Files (x86)\YoutubeAdblocker
Pasta Deletada : C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}
Pasta Deletada : C:\Windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Pasta Deletada : C:\Windows\SysWOW64\ARFC
Pasta Deletada : C:\Windows\SysWOW64\BrowserProtect
Pasta Deletada : C:\Windows\SysWOW64\jmdp
Pasta Deletada : C:\Windows\SysWOW64\WNLT
Pasta Deletada : C:\Users\admin\Qtrax
Pasta Deletada : C:\Users\admin\AppData\Local\apn
Pasta Deletada : C:\Users\admin\AppData\Local\Babylon
Pasta Deletada : C:\Users\admin\AppData\Local\Beamrise
Pasta Deletada : C:\Users\admin\AppData\Local\BeamriseUninstall
Pasta Deletada : C:\Users\admin\AppData\Local\BonanzaDealsLive
Pasta Deletada : C:\Users\admin\AppData\Local\cool_mirage
Pasta Deletada : C:\Users\admin\AppData\Local\genienext
Pasta Deletada : C:\Users\admin\AppData\Local\Mobogenie
Pasta Deletada : C:\Users\admin\AppData\Local\Pirrit Suggestor
Pasta Deletada : C:\Users\admin\AppData\Local\SaveSenseLive
Pasta Deletada : C:\Users\admin\AppData\Local\Smartbar
Pasta Deletada : C:\Users\admin\AppData\Local\Wajam
Pasta Deletada : C:\Users\admin\AppData\Local\webplayer
Pasta Deletada : C:\Users\admin\AppData\Local\Temp\Smartbar
Pasta Deletada : C:\Users\admin\AppData\LocalLow\AskToolbar
Pasta Deletada : C:\Users\admin\AppData\LocalLow\Delta
Pasta Deletada : C:\Users\admin\AppData\LocalLow\Minibar
Pasta Deletada : C:\Users\admin\AppData\LocalLow\Smartbar
Pasta Deletada : C:\Users\admin\AppData\Roaming\BabSolution
Pasta Deletada : C:\Users\admin\AppData\Roaming\Babylon
Pasta Deletada : C:\Users\admin\AppData\Roaming\baidu
Pasta Deletada : C:\Users\admin\AppData\Roaming\Betcat
Pasta Deletada : C:\Users\admin\AppData\Roaming\DealPly
Pasta Deletada : C:\Users\admin\AppData\Roaming\eIntaller
Pasta Deletada : C:\Users\admin\AppData\Roaming\file scout
Pasta Deletada : C:\Users\admin\AppData\Roaming\Funmoods
Pasta Deletada : C:\Users\admin\AppData\Roaming\newnext.me
Pasta Deletada : C:\Users\admin\AppData\Roaming\Pirrit
Pasta Deletada : C:\Users\admin\AppData\Roaming\Systweak
Pasta Deletada : C:\Users\admin\AppData\Roaming\Web Cake
Pasta Deletada : C:\Users\admin\AppData\Roaming\WebCake
Pasta Deletada : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BonanzaDeals
Pasta Deletada : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly
Pasta Deletada : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker
Pasta Deletada : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FTDownloader.com
Pasta Deletada : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
Pasta Deletada : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com
Pasta Deletada : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam
Pasta Deletada : C:\Users\admin\Documents\Mobogenie
Pasta Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\Extensions\{97A78363-B868-4B48-AC91-A783A31215AF}
Pasta Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\Extensions\{D4A5FD5B-2243-4A66-9F96-9E488A2A4147}
Pasta Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\Extensions\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}
Pasta Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\Extensions\{f9d03c26-0575-497e-821d-f7956d23e0ca}
Pasta Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\Extensions\addon@dealplyshopping.com
Pasta Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\Extensions\amo@dealplyshopping.com
Pasta Deletada : C:\Program Files (x86)\Mozilla Firefox\Extensions\ffxtlbr@babylon.com
Pasta Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\Extensions\ffxtlbr@delta.com
Pasta Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\Extensions\plugin@getwebcake.com
Pasta Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0\Extensions\plugin@getwebcake.com
Pasta Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\Extensions\toolbar@ask.com
Pasta Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\Extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com
Pasta Deletada : C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo
Pasta Deletada : C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmfnfnpmhcllokmkepffndflpnadjmma
Pasta Deletada : C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnbcopcndefcccgdofjadnafjljgofam
Pasta Deletada : C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ieadcoanfjloocmfafkebdnfefmohngj
Pasta Deletada : C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nchpfiddbhbdnagofhkjlaiaejmkdcla
Arquivo Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\Extensions\gophoto@gophoto.it.xpi
Arquivo Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0\Extensions\suggestor@suggestor.pirrit.com.xpi
Arquivo Deletada : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\lollipop.lnk
Arquivo Deletada : C:\Windows\System32\roboot64.exe
Arquivo Deletada : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\lollipop.lnk
Arquivo Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\bprotector_extensions.sqlite
Arquivo Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\bprotector_prefs.js
Arquivo Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\searchplugins\Askcom.xml
Arquivo Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\searchplugins\Babylon.xml
Arquivo Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\searchplugins\SweetIM Search.xml
Arquivo Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\searchplugins\Web Search.xml
Arquivo Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\user.js
Arquivo Deletada : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0\user.js
Arquivo Deletada : C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bbjciahceamgodcoidkjpchnokgfpphh_0.localstorage
Arquivo Deletada : C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cjpglkicenollcignonpgiafdgfeehoj_0.localstorage
Arquivo Deletada : C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ojcgaoafcmbadjkfdippkdddgkeaipbn_0.localstorage
Arquivo Deletada : C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job
Arquivo Deletada : C:\Windows\System32\Tasks\BonanzaDealsLiveUpdateTaskMachineCore
Arquivo Deletada : C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job
Arquivo Deletada : C:\Windows\System32\Tasks\BonanzaDealsLiveUpdateTaskMachineUA
Arquivo Deletada : C:\Windows\System32\Tasks\BonanzaDealsUpdate
Arquivo Deletada : C:\Windows\System32\Tasks\BrowserProtect
Arquivo Deletada : C:\Windows\System32\Tasks\Dealply
Arquivo Deletada : C:\Windows\System32\Tasks\DealPlyUpdate
Arquivo Deletada : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar
Arquivo Deletada : C:\Windows\Tasks\Plus-HD-1.7-chromeinstaller.job
Arquivo Deletada : C:\Windows\System32\Tasks\Plus-HD-1.7-chromeinstaller
Arquivo Deletada : C:\Windows\Tasks\Plus-HD-1.7-codedownloader.job
Arquivo Deletada : C:\Windows\System32\Tasks\Plus-HD-1.7-codedownloader
Arquivo Deletada : C:\Windows\Tasks\Plus-HD-1.7-enabler.job
Arquivo Deletada : C:\Windows\System32\Tasks\Plus-HD-1.7-enabler
Arquivo Deletada : C:\Windows\Tasks\Plus-HD-1.7-firefoxinstaller.job
Arquivo Deletada : C:\Windows\System32\Tasks\Plus-HD-1.7-firefoxinstaller

***** [ Atalhos ] *****

Atalho Desinfectada : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Mahjong Games\Uninstall.lnk
Atalho Desinfectada : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeMeter\Tools\CodeMeter Command Prompt.lnk
Atalho Desinfectada : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk
Atalho Desinfectada : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Online Weather\Uninstall.lnk
Atalho Desinfectada : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Mahjong Games\Uninstall.lnk
Atalho Desinfectada : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat\Uninstall.lnk
Atalho Desinfectada : C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\portaldosites.lnk

***** [ Registro ] *****

Valor Deletedo : HKCU\Software\Mozilla\Firefox\Extensions [happylyrics@hpyproductions.net]
Valor Deletedo : HKCU\Software\Mozilla\Firefox\Extensions [lfind@nijadsoft.net]
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo
Chave Deletedo : HKCU\Software\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh
Chave Deletedo : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\fmfnfnpmhcllokmkepffndflpnadjmma
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\gnbcopcndefcccgdofjadnafjljgofam
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\nbmafkdmkkckhggblphicnnhlgljnoje
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\ojcgaoafcmbadjkfdippkdddgkeaipbn
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk
Chave Deletedo : HKCU\Software\Classes\Applications\lollipop.exe
Valor Deletedo : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Valor Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Valor Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Browser Infrastructure Helper]
Valor Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Chave Deletedo : HKLM\SOFTWARE\Classes\*\shell\filescout
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\BonanzaDealsLive.exe
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\priam_bho.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\PricePeep.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLive.OneClickCtrl.9
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLive.OneClickProcessLauncherMachine
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLive.OneClickProcessLauncherMachine.1.0
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLive.Update3WebControl.3
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.CoCreateAsync
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.CoCreateAsync.1.0
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.CoreClass
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.CoreClass.1
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.CoreMachineClass
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.CoreMachineClass.1
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.CredentialDialogMachine
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.CredentialDialogMachine.1.0
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.OnDemandCOMClassMachine
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.OnDemandCOMClassMachine.1.0
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.OnDemandCOMClassMachineFallback
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.OnDemandCOMClassMachineFallback.1.0
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.OnDemandCOMClassSvc
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.OnDemandCOMClassSvc.1.0
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.ProcessLauncher
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.ProcessLauncher.1.0
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.Update3COMClassService
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.Update3COMClassService.1.0
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.Update3WebMachine
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.Update3WebMachine.1.0
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.Update3WebMachineFallback
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.Update3WebMachineFallback.1.0
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.Update3WebSvc
Chave Deletedo : HKLM\SOFTWARE\Classes\BonanzaDealsLiveUpdate.Update3WebSvc.1.0
Chave Deletedo : HKLM\SOFTWARE\Classes\delta.deltaappCore
Chave Deletedo : HKLM\SOFTWARE\Classes\delta.deltaappCore.1
Chave Deletedo : HKLM\SOFTWARE\Classes\escort.escortIEPane
Chave Deletedo : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Chave Deletedo : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute
Chave Deletedo : HKLM\SOFTWARE\Classes\iesmartbar.bho
Chave Deletedo : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel
Chave Deletedo : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar
Chave Deletedo : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject
Chave Deletedo : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate
Chave Deletedo : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform
Chave Deletedo : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils
Chave Deletedo : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils.1
Chave Deletedo : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator
Chave Deletedo : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator.1
Chave Deletedo : HKLM\SOFTWARE\Classes\Prod.cap
Chave Deletedo : HKLM\SOFTWARE\Classes\sim-packages
Chave Deletedo : HKLM\SOFTWARE\Classes\wajam.WajamBHO
Chave Deletedo : HKLM\SOFTWARE\Classes\wajam.WajamBHO.1
Chave Deletedo : HKLM\SOFTWARE\Classes\wajam.WajamDownloader
Chave Deletedo : HKLM\SOFTWARE\Classes\wajam.WajamDownloader.1
Chave Deletedo : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api
Chave Deletedo : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Mobogenie.exe
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Chave Deletedo : HKLM\SOFTWARE\MozillaPlugins\@tools.bdupdater.com/BonanzaDealsLive Update;version=3
Chave Deletedo : HKLM\SOFTWARE\MozillaPlugins\@tools.bdupdater.com/BonanzaDealsLive Update;version=9
Chave Deletedo : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WajamUpdater
Chave Deletedo : HKLM\SOFTWARE\Classes\CrossriderApp0032154.BHO
Chave Deletedo : HKLM\SOFTWARE\Classes\CrossriderApp0032154.Sandbox
Chave Deletedo : HKLM\SOFTWARE\Classes\CrossriderApp0032154.Sandbox.1
Chave Deletedo : HKCU\Software\a6dbdcbd3cba42
Chave Deletedo : HKLM\SOFTWARE\a6dbdcbd3cba42
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{1FAEE6D5-34F4-42AA-8025-3FD8F3EC4634}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{9EA8702C-EEDB-4731-BE68-E9A167DD3597}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{D34F391D-4CB7-467F-A543-F583857C63B0}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{0F21B1E5-5AFC-43C9-9C66-515046E92EC2}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{118E1BF6-6279-432F-A285-373A77B90C7A}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{14CEEA2F-3D21-46ED-A7D2-89056C520E5E}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{1CC8D970-F626-4F19-815F-890032BB6606}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{29494049-211F-4F5C-8545-7DA8BF7A6CF8}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{33BAF587-9647-4281-A34F-F4830CDC1B9F}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{3728BA43-F94F-42A4-9E8D-00B930D1DB28}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{398C01F1-E584-46AD-A649-4F78B435DCFE}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{4B6ACEA2-308A-4876-AD36-57CEC5B4FCC7}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{539F76FD-084E-4858-86D5-62F02F54AE86}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{5B5E5D0E-7C83-4A32-ADD2-E5F488DD6783}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{5D64294B-1341-4FE7-B6D8-7C36828D4DD5}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{60EACC1A-33FA-443D-9846-17B28E2C9BDB}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{6802463D-636F-41FE-9924-4CAD56906590}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{806785D0-375F-4C2C-92E3-B8EE65D28E83}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{944661E7-67B9-4DF7-BFF2-05388C166D34}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{9EA8702C-EEDB-4731-BE68-E9A167DD3597}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{A0B10EBE-4E51-4CAE-949B-E6B9E7D68CEA}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{A7CF66EF-4F0D-46B1-AF71-A500378D6C34}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{AA74D58F-ACD0-450D-A85E-6C04B171C044}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{AAA38851-3CFF-475F-B5E0-720D3645E4A5}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{B71934E5-6B93-448D-9D32-CBAA5150C5D8}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{BB975E58-E769-4E5A-BA12-B765BC559FF3}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{C4BEF720-313C-420A-ACF6-77DD95D8F553}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{D34F391D-4CB7-467F-A543-F583857C63B0}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{E970727E-0508-4BEB-8B72-BBA9D0D047C7}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{EBF1F869-D2F0-4D31-A877-386C853A9C3D}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{EF7BD87A-8024-11E2-F316-F3E56188709B}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{F3CF4912-CF0A-451B-AF3B-C4F216C715E4}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{F511AFDB-726E-4458-90E7-1ECB97406544}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{F904AC50-215C-42AB-A532-77E9FDBA9B19}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{FE063412-BEA4-4D76-8ED3-183BE6220D17}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311211154}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322212254}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{06E50566-0AB7-431C-841D-62794727DAF9}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{26E7211D-0650-43CF-8498-4C81E83AEAAA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C17A0751-580B-466B-8271-5C73EFDC1295}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355215554}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366216654}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0F21B1E5-5AFC-43C9-9C66-515046E92EC2}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3728BA43-F94F-42A4-9E8D-00B930D1DB28}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B6ACEA2-308A-4876-AD36-57CEC5B4FCC7}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA74D58F-ACD0-450D-A85E-6C04B171C044}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF7BD87A-8024-11E2-F316-F3E56188709B}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE063412-BEA4-4D76-8ED3-183BE6220D17}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311211154}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0F21B1E5-5AFC-43C9-9C66-515046E92EC2}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3728BA43-F94F-42A4-9E8D-00B930D1DB28}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B6ACEA2-308A-4876-AD36-57CEC5B4FCC7}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AA74D58F-ACD0-450D-A85E-6C04B171C044}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF7BD87A-8024-11E2-F316-F3E56188709B}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FE063412-BEA4-4D76-8ED3-183BE6220D17}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311211154}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0F21B1E5-5AFC-43C9-9C66-515046E92EC2}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3728BA43-F94F-42A4-9E8D-00B930D1DB28}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4B6ACEA2-308A-4876-AD36-57CEC5B4FCC7}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AA74D58F-ACD0-450D-A85E-6C04B171C044}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF7BD87A-8024-11E2-F316-F3E56188709B}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FE063412-BEA4-4D76-8ED3-183BE6220D17}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{29494049-211F-4F5C-8545-7DA8BF7A6CF8}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C4BEF720-313C-420A-ACF6-77DD95D8F553}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311211154}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{AAA38851-3CFF-475F-B5E0-720D3645E4A5}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{29494049-211F-4F5C-8545-7DA8BF7A6CF8}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33BAF587-9647-4281-A34F-F4830CDC1B9F}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C4BEF720-313C-420A-ACF6-77DD95D8F553}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C87FC351-A80D-43E9-9A86-CF1E29DC443A}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4c3dd22f-f66d-4531-8d0e-79f95721be87}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9a70d8e4-0f28-4194-91d9-f4f70bcbd014}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{b1088c26-d931-4f6d-862e-3b08b38371d3}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e296e3be-2e74-4941-9ebe-24f80acc0a12}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e438ee0e-196e-43b1-8a36-a9501335c7e4}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{7F4EFF06-7032-458E-AE16-1C1D8255C28A}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7F4EFF06-7032-458E-AE16-1C1D8255C28A}
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{82E1477C-B154-48D3-9891-33D83C26BCD3}]
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Valor Deletedo : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{06E50566-0AB7-431C-841D-62794727DAF9}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{26E7211D-0650-43CF-8498-4C81E83AEAAA}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C17A0751-580B-466B-8271-5C73EFDC1295}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355215554}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366216654}
Valor Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Valor Deletedo : HKLM\SOFTWARE\Policies\Google\Chrome\ExtensionInstallForcelist [1]
Chave Deletedo : HKCU\Software\1ClickDownload
Chave Deletedo : HKCU\Software\APN
Chave Deletedo : HKCU\Software\Ask.com
Chave Deletedo : HKCU\Software\BabylonToolbar
Chave Deletedo : HKCU\Software\BI
Chave Deletedo : HKCU\Software\BonanzaDealsLive
Chave Deletedo : HKCU\Software\DataMngr_Toolbar
Chave Deletedo : HKCU\Software\DealPly
Chave Deletedo : HKCU\Software\delta LTD
Chave Deletedo : HKCU\Software\Delta
Chave Deletedo : HKCU\Software\filescout
Chave Deletedo : HKCU\Software\Funmoods
Chave Deletedo : HKCU\Software\Headlight
Chave Deletedo : HKCU\Software\IM
Chave Deletedo : HKCU\Software\Iminent
Chave Deletedo : HKCU\Software\ImInstaller
Chave Deletedo : HKCU\Software\InstallCore
Chave Deletedo : HKCU\Software\installedbrowserextensions
Chave Deletedo : HKCU\Software\lollipop
Chave Deletedo : HKCU\Software\SaveSenseLive
Chave Deletedo : HKCU\Software\SmartBar
Chave Deletedo : HKCU\Software\smartbarbackup
Chave Deletedo : HKCU\Software\smartbarlog
Chave Deletedo : HKCU\Software\Softonic
Chave Deletedo : HKCU\Software\Somoto
Chave Deletedo : HKCU\Software\systweak
Chave Deletedo : HKCU\Software\Wajam
Chave Deletedo : HKCU\Software\Webplayer
Chave Deletedo : HKCU\Software\wnlt
Chave Deletedo : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Chave Deletedo : HKCU\Software\AppDataLow\Software\AskToolbar
Chave Deletedo : HKCU\Software\AppDataLow\Software\HappyLyrics
Chave Deletedo : HKCU\Software\AppDataLow\Software\LyricsFinder
Chave Deletedo : HKCU\Software\AppDataLow\Software\Plus-HD-1.7
Chave Deletedo : HKCU\Software\AppDataLow\Software\PricePeep
Chave Deletedo : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Chave Deletedo : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Chave Deletedo : HKLM\Software\APN
Chave Deletedo : HKLM\Software\AskToolbar
Chave Deletedo : HKLM\Software\Babylon
Chave Deletedo : HKLM\Software\BabylonToolbar
Chave Deletedo : HKLM\Software\BonanzaDealsLive
Chave Deletedo : HKLM\Software\DataMngr
Chave Deletedo : HKLM\Software\DealPly
Chave Deletedo : HKLM\Software\DealPlyLive
Chave Deletedo : HKLM\Software\Delta
Chave Deletedo : HKLM\Software\Iminent
Chave Deletedo : HKLM\Software\InstallCore
Chave Deletedo : HKLM\Software\Minibar
Chave Deletedo : HKLM\Software\Pirrit
Chave Deletedo : HKLM\Software\Plus-HD-1.7
Chave Deletedo : HKLM\Software\SaveSenseLive
Chave Deletedo : HKLM\Software\SoftwareUpdater
Chave Deletedo : HKLM\Software\Vittalia
Chave Deletedo : HKLM\Software\Wajam
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\AppsHat Mobile Apps
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\DealPly
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA41BB14-E67B-1653-C57B-5CA99418A866}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{D08D9F98-1C78-4704-87E6-368B0023D831}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Bonanza Deals
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DealPly
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Delta
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Mobogenie
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Plus-HD-1.7
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PricePeep
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SweetIM Bundle by SweetPacks
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wajam
Chave Deletedo : [x64] HKLM\SOFTWARE\Speedchecker Limited
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}
Chave Deletedo : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Chave Deletedo : HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B
Chave Deletedo : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Chave Deletedo : HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B

***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.16428

Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]
Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]

-\\ Mozilla Firefox v

[ Arquivo : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\prefs.js ]

Linha deletada : user_pref("browser.search.defaultengine", "Ask.com");
Linha deletada : user_pref("browser.search.selectedEngine", "Web Search");
Linha deletada : user_pref("extensions.asktb.abar-war-regex", "conduit\\.com");
Linha deletada : user_pref("extensions.asktb.autofill-competitor-query-enabled", true);
Linha deletada : user_pref("extensions.asktb.cbid", "^U3");
Linha deletada : user_pref("extensions.asktb.config-updated", false);
Linha deletada : user_pref("extensions.asktb.crumb", "2013.06.29+11.49.29-toolbar020iad-BR-QnJhc2lsaWEsQnJhemls");
Linha deletada : user_pref("extensions.asktb.default-channel-url-mask", "hxxp://br.ask.com/web?q={query}&qsrc={qsrc}&o={o}&l={l}&gct=bar");
Linha deletada : user_pref("extensions.asktb.displaybehavior", "");
Linha deletada : user_pref("extensions.asktb.displaytext", "");
Linha deletada : user_pref("extensions.asktb.dtid", "^YYYYYY^YY^BR");
Linha deletada : user_pref("extensions.asktb.dyn-weather-do-locid-lookup-weatherWidget", false);
Linha deletada : user_pref("extensions.asktb.dyn-weather-locid-weatherWidget", "BRXX0043");
Linha deletada : user_pref("extensions.asktb.dyn-weather-tempunit-weatherWidget", "C");
Linha deletada : user_pref("extensions.asktb.ff-original-keyword-url", "hxxp://feed.snapdo.com/?publisher=SnapdoEMonYB&dpid=SnapdoEMonYB&co=BR&userid=7fd4832c-6ec0-438e-b3f7-d4fe35444f41&searchtype=ds&installDate=05/0[...]
Linha deletada : user_pref("extensions.asktb.ff19-config-first-run", "true");
Linha deletada : user_pref("extensions.asktb.fresh-install", false);
Linha deletada : user_pref("extensions.asktb.hxxp-header-whitelist-hosts", "[\"static-dev.en.dev.ask.com\", \"ask.com\", \"[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] \"[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] \"[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] \"hxxps://websearch.ask.com\", [...]
Linha deletada : user_pref("extensions.asktb.keyword-toggled-in-session", false);
Linha deletada : user_pref("extensions.asktb.l", "dis");
Linha deletada : user_pref("extensions.asktb.last-config-req", "1372725071845");
Linha deletada : user_pref("extensions.asktb.locale", "pt_BR");
Linha deletada : user_pref("extensions.asktb.location", "Brasilia,Brazil");
Linha deletada : user_pref("extensions.asktb.lstation", "");
Linha deletada : user_pref("extensions.asktb.new-tab-opt-out", true);
Linha deletada : user_pref("extensions.asktb.news-native-on", true);
Linha deletada : user_pref("extensions.asktb.o", "100000027");
Linha deletada : user_pref("extensions.asktb.overlay-reloaded-using-restart", true);
Linha deletada : user_pref("extensions.asktb.pstate", "");
Linha deletada : user_pref("extensions.asktb.qsrc", "2871");
Linha deletada : user_pref("extensions.asktb.r", "20");
Linha deletada : user_pref("extensions.asktb.search-suggestions-enabled", true);
Linha deletada : user_pref("extensions.asktb.silent-upgrade-from-pre-newtabs-build", false);
Linha deletada : user_pref("extensions.asktb.slwo", "1");
Linha deletada : user_pref("extensions.asktb.socialmini-first", true);
Linha deletada : user_pref("extensions.asktb.socialmini-interval", "1200000");
Linha deletada : user_pref("extensions.asktb.socialmini-max-char-ticker", "33");
Linha deletada : user_pref("extensions.asktb.socialmini-max-items", "30");
Linha deletada : user_pref("extensions.asktb.socialmini-native-on", true);
Linha deletada : user_pref("extensions.asktb.socialmini-speed", "10000");
Linha deletada : user_pref("extensions.asktb.socialmini-transition-first-open", false);
Linha deletada : user_pref("extensions.asktb.to", "");
Linha deletada : user_pref("extensions.asktb.v", "3.15.23.100013");
Linha deletada : user_pref("extensions.asktb.volume", "");
Linha deletada : user_pref("extensions.delta.bbDpng", "1");
Linha deletada : user_pref("extensions.delta.cntry", "BR");
Linha deletada : user_pref("extensions.delta.hdrMd5", "");
Linha deletada : user_pref("extensions.delta.lastVrsnTs", "");
Linha deletada : user_pref("extensions.delta.sg", "er");
Linha deletada : user_pref("extensions.delta.smplGrp", "er");
Linha deletada : user_pref("extensions.enabledAddons", "amo%40dealplyshopping.com:2.0,ffxtlbr%40delta.com:1.5.0,plugin%40getwebcake.com:1.00.01,%7B7fd4832c-6ec0-438e-b3f7-d4fe35444f41%7D:1.1,toolbar%40ask.com:3.15.23.[...]
Linha deletada : user_pref("extensions.helperbar.countryiso", "br");
Linha deletada : user_pref("extensions.helperbar.DockingPositionDown", false);
Linha deletada : user_pref("extensions.helperbar.downloadprovider", "snapdoemonyb");
Linha deletada : user_pref("extensions.helperbar.installationid", "7fd4832c-6ec0-438e-b3f7-d4fe35444f41");
Linha deletada : user_pref("extensions.helperbar.installdate", "05/05/2013");
Linha deletada : user_pref("extensions.helperbar.publisher", "snapdoemonyb");
Linha deletada : user_pref("extensions.helperbar.SmartbarDisabled", false);
Linha deletada : user_pref("extensions.helperbar.SmartbarStateMinimaized", false);
Linha deletada : user_pref("extensions.helperbar.Visibility", true);
Linha deletada : user_pref("extentions.webcake.defaultEnableAppsList", "layers,brain/features,newOffers/wc");
Linha deletada : user_pref("extentions.webcake.installId", "03f781d3-ab24-4579-a718-a8677d4aff41");
Linha deletada : user_pref("keyword.URL", "hxxp://feed.snapdo.com/?publisher=SnapdoEMonYB&dpid=SnapdoEMonYB&co=BR&userid=7fd4832c-6ec0-438e-b3f7-d4fe35444f41&searchtype=ds&installDate=05/05/2013&q=");

[ Arquivo : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0\prefs.js ]


-\\ Google Chrome v32.0.1700.72

[ Arquivo : C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deletedo : homepage
Deletedo : urls_to_restore_on_startup
Deletedo : icon_url
Deletedo : search_url
Deletedo : keyword

*************************

AdwCleaner[R0].txt - [64420 octets] - [15/01/2014 11:58:14]
AdwCleaner[S0].txt - [59251 octets] - [15/01/2014 12:09:06]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [59312 octets] ##########
Pedro Silva
Pedro Silva
Iniciante
Iniciante

Mensagens : 8
Reputação : 0
Data de inscrição : 11/01/2014

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Power Max Qua 15 Jan 2014, 12:42

 isso aí! Vários problemas foram removidos pelo AdwCleaner.
_____________________________________________________________________

Uso de CPU chega a 100% 772309 Siga, por gentileza, as dicas do tutorial abaixo:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste, por gentileza, o log do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt .

Ficamos na espera.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Pedro Silva Qui 16 Jan 2014, 14:08

Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.0 (01.07.2014:1)
OS: Windows 7 Enterprise x64
Ran by admin on 16/01/2014 at 13:45:23,06
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\AboutURLs\\Tabs



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{998745A3-2AE4-488D-8092-B98FB20A00C2}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A18D16ED-27B2-4B83-B70C-15E73F099546}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A2DF06F9-A21A-44A8-8A99-8B9C84F29160}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{C1424421-D274-491E-9D47-11C8D8CB5F9A}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\baidu
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\bonanzadeals
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\sweetim
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\wajam
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\baidu
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\bonanzadeals
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\caphyon
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{7F4EFF06-7032-458e-AE16-1C1D8255C28A}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{7F4EFF06-7032-458e-AE16-1C1D8255C28A}
Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\low rights\elevationpolicy\{a5aa24ea-11b8-4113-95ae-9ed71deaf12a}"



~~~ Files

Successfully deleted: [File] "C:\Windows\Tasks\dll-files.com fixer_monthly.job"
Successfully deleted: [File] "C:\Windows\Tasks\dll-files.com fixer_updates.job"
Successfully deleted: [File] "C:\Users\admin\appdata\locallow\microsoft\silverlight\outofbrowser\index\portal.qtrax.com"



~~~ Folders

Successfully deleted: [Folder] "C:\Users\admin\AppData\Roaming\dll-files.com"
Successfully deleted: [Folder] "C:\Users\admin\AppData\Roaming\getrighttogo"
Successfully deleted: [Folder] "C:\Users\admin\appdata\local\appshat mobile apps"
Successfully deleted: [Folder] "C:\Program Files (x86)\dll-files.com fixer"
Successfully deleted: [Folder] "C:\Program Files (x86)\secretsauce"
Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin"
Successfully deleted: [Folder] "C:\Users\admin\music\qtrax media library"



~~~ Chrome

Failed to delete: [Folder] C:\Users\admin\appdata\local\Google\Chrome\User Data\Default\Extensions\khcceooakamlehbimaepcldnnlnkcmfk



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 16/01/2014 at 14:01:47,77
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Pedro Silva
Pedro Silva
Iniciante
Iniciante

Mensagens : 8
Reputação : 0
Data de inscrição : 11/01/2014

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Power Max Qui 16 Jan 2014, 14:20

isso aí! Vários outros problemas foram removidos pelo Junkware Removal Tool.
___________________________________________________________________

Uso de CPU chega a 100% 772309 Siga, por gentileza, as dicas deste tutorial para fazer uma limpeza de seu PC com o Malwarebytes:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Na sua próxima resposta poste este log do Malwarebytes para que possamos analisá-lo.

Ficamos no aguardo.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Pedro Silva Sáb 18 Jan 2014, 13:11

Malwarebytes Anti-Malware 1.75.0.1300
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Versão da Base de Dados:  v2014.01.17.09

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16476
admin :: ADMIN-PC [administrador]

18/01/2014 01:39:44
mbam-log-2014-01-18 (01-39-44).txt

Tipo de Verificação:  Verificação Completa  (C:\|D:\|)
Opções de verificações ativadas: Memória | Inicialização | Registro | Sistema de arquivos  | Heurística/Extra | Heurística/Shuriken | PUP | PUM
Opções de verificação desativadas: P2P
Objetos escaneados:  377915
Tempo decorrido: 1 hora(s), 4 minuto(s), 21 segundo(s)

Processos de Memória Detectados: 0
(Não foram detectados ítens maliciosos)

Módulos de Memória Detectados: 0
(Não foram detectados ítens maliciosos)

Chaves de Registro Detectadas: 35
HKCR\AppID\{A2D3FB7A-6873-45E8-AF96-57092D721828} (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\CLSID\{A2D3FB7A-6873-45E8-AF96-57092D721828} (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.OnDemandCOMClassSvc.1.0 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.OnDemandCOMClassSvc (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLive.OneClickCtrl.9 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLive.OneClickProcessLauncherMachine (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLive.OneClickProcessLauncherMachine.1.0 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLive.Update3WebControl.3 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.CoCreateAsync (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.CoCreateAsync.1.0 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.CoreClass (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.CoreClass.1 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.CoreMachineClass (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.CoreMachineClass.1 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.CredentialDialogMachine (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.CredentialDialogMachine.1.0 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.OnDemandCOMClassMachine (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.OnDemandCOMClassMachine.1.0 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.OnDemandCOMClassMachineFallback (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.OnDemandCOMClassMachineFallback.1.0 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.ProcessLauncher (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.ProcessLauncher.1.0 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.Update3COMClassService (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.Update3COMClassService.1.0 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.Update3WebMachine (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.Update3WebMachine.1.0 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.Update3WebMachineFallback (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.Update3WebMachineFallback.1.0 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.Update3WebSvc (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\SaveSenseLiveUpdate.Update3WebSvc.1.0 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCR\AppID\SaveSenseLive.exe (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKCU\SOFTWARE\SaveSense (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKLM\SOFTWARE\SaveSense (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKLM\SOFTWARE\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=3 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
HKLM\SOFTWARE\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=9 (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.

Valores de Registro Detectadas: 0
(Não foram detectados ítens maliciosos)

Itens de Dados no Registro Detectadas: 0
(Não foram detectados ítens maliciosos)

Pastas Detectadas: 0
(Não foram detectados ítens maliciosos)

Arquivos Detectados: 108
C:\AdwCleaner\Quarantine\C\Program Files (x86)\BonanzaDeals\BonanzaDealsIE.dll.vir (PUP.Optional.BonanzaDeals.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe.vir (PUP.Optional.BonanzaDeals.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\BonanzaDealsLive.exe.vir (PUP.Optional.BonanzaDeals.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\BonanzaDealsLiveBroker.exe.vir (PUP.Optional.BonanzaDeals.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\BonanzaDealsLiveHandler.exe.vir (PUP.Optional.BonanzaDeals.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\BonanzaDealsLiveOnDemand.exe.vir (PUP.Optional.BonanzaDeals.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\goopdate.dll.vir (PUP.Optional.BonanzaDeals.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll.vir (PUP.Optional.BonanzaDeals.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\psmachine.dll.vir (PUP.Optional.BonanzaDeals.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\psuser.dll.vir (PUP.Optional.BonanzaDeals.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Delta\delta\1.8.16.16\deltaApp.dll.vir (PUP.Optional.Delta) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Delta\delta\1.8.16.16\deltaEng.dll.vir (PUP.Optional.Delta) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Delta\delta\1.8.16.16\deltasrv.exe.vir (PUP.Optional.Delta) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Delta\delta\1.8.16.16\deltaTlbr.dll.vir (PUP.Optional.Delta) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Delta\delta\1.8.16.16\bh\delta.dll.vir (PUP.Optional.Delta) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Feven 2.1\Feven 2.1-bg.exe.vir (PUP.Optional.Feven.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Feven 2.1\Feven 2.1-bho.dll.vir (PUP.Optional.Feven.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Feven 2.1\Feven 2.1-bho64.dll.vir (PUP.Optional.Feven.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Feven 2.1\Feven 2.1-buttonutil.exe.vir (PUP.Optional.Feven.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Feven 2.1\Feven 2.1-buttonutil64.exe.vir (PUP.Optional.Feven.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Feven 2.1\Feven 2.1-chromeinstaller.exe.vir (PUP.Optional.Feven.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Feven 2.1\Feven 2.1-codedownloader.exe.vir (PUP.Optional.Feven.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Feven 2.1\Feven 2.1-enabler.exe.vir (PUP.Optional.Feven.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Feven 2.1\Feven 2.1-firefoxinstaller.exe.vir (PUP.Optional.Feven.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Feven 2.1\Feven 2.1-updater.exe.vir (PUP.Optional.Feven.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Feven 2.1\utils.exe.vir (PUP.Optional.Feven.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Iminent\inst\Bootstrapper\IminentUninstall.exe.vir (PUP.Optional.Iminent.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Minibar\Minibar.dll.vir (PUP.Optional.MiniBar.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-bg.exe.vir (PUP.Optional.PlusHD.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-bho.dll.vir (PUP.Optional.PlusHD.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-buttonutil.exe.vir (PUP.Optional.PlusHD.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-buttonutil64.exe.vir (PUP.Optional.PlusHD.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-chromeinstaller.exe.vir (PUP.Optional.PlusHD.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-codedownloader.exe.vir (PUP.Optional.PlusHD.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-enabler.exe.vir (PUP.Optional.PlusHD.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-firefoxinstaller.exe.vir (PUP.Optional.PlusHD.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\utils.exe.vir (PUP.Optional.PlusHD.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\ContentPackagesActivationHandler.exe.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgArchive.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgcommon.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgcommunication.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgconfig.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgFlashPlayer.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mghooking.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgICQAuto.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgICQMessengerAdapter.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mglogger.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgMediaPlayer.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgMsnAuto.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgMsnMessengerAdapter.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgsimcommon.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgSweetIM.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgUpdateSupport.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgxml_wrapper.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgYahooAuto.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\mgYahooMessengerAdapter.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\SweetIM.exe.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SweetIM\Messenger\resources\sqlite\mgSqlite3.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Wajam\IE\priam_bho.dll.vir (PUP.Optional.Wajam) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\Wajam\Updater\WajamUpdater.exe.vir (PUP.Optional.Wajam.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe.vir (Adware.WebCake) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Users\admin\AppData\Local\Smartbar\Application\SmartbarVersionsHelper.exe.vir (PUP.Optional.SmartBar.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Users\admin\AppData\Roaming\BabSolution\Shared\BabMaint.exe.vir (PUP.Optional.Babylon.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Users\admin\AppData\Roaming\file scout\filescout.exe.vir (PUP.Optional.FileScout.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Users\admin\AppData\Roaming\WebCake\WebCakeDesktop.exe.vir (Adware.WebCake) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\DealPly\DealPlyIE.dll.vir (PUP.DealPly) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\DealPly\DealPlyUpdate.exe.vir (PUP.Optional.Dealply) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\DealPly\DealPlyUpdateRun.exe.vir (PUP.Optional.Dealply) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\PricePeep\uninstall.exe.vir (PUP.Optional.PricePeep.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlls.dll.vir (PUP.Optional.RelevantKnowledge) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlls64.dll.vir (PUP.Optional.RelevantKnowledge) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlph.dll.vir (PUP.Optional.RelevantKnowledge) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlservice.exe.vir (PUP.Optional.RelevantKnowledge) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlvknlg.exe.vir (PUP.Optional.RelevantKnowledge) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlvknlg32.exe.vir (PUP.Optional.RelevantKnowledge) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlvknlg64.exe.vir (PUP.Optional.RelevantKnowledge) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlxf.dll.vir (PUP.Optional.RelevantKnowledge) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\RelevantKnowledge\components\rlxg.dll.vir (PUP.Optional.RelevantKnowledge) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\RelevantKnowledge\firefox\rlnx.dll.vir (PUP.Optional.RelevantKnowledge) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\SaveSense\SaveSenseUpdateVer.exe.vir (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe.vir (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\goopdate.dll.vir (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll.vir (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\psmachine.dll.vir (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\psuser.dll.vir (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\SaveSenseLive.exe.vir (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\SaveSenseLiveBroker.exe.vir (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\SaveSenseLiveHandler.exe.vir (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\SaveSenseLiveOnDemand.exe.vir (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Users\admin\AppData\Roaming\SaveSense\UpdateProc\UpdateTask.exe.vir (PUP.Optional.SaveSense.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Windows\SysWOW64\rlls.dll.vir (PUP.Optional.RelevantKnowledge) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\AppData\Local\Temp\kwtosedsbxzzm.exe (PUP.Optional.BundleInstaller) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\AppData\Local\Temp\parent.txt (PUP.Optional.BundleInstaller.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\AppData\Local\Temp\22208baf-cb4b-47da-80b7-5c7e50ed16200\parent.txt (PUP.Optional.BundleInstaller.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\AppData\Local\Temp\22208baf-cb4b-47da-80b7-5c7e50ed16200\software\tugs_nationzoom.exe (PUP.Optional.SkyTech.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\AppData\Local\Temp\fullpackage_temp1389807889\Baofeng.exe (PUP.Optional.NationZoom.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\Downloads\01 Fullmetal Alchemist.mp4.exe (PUP.Optional.Installrex) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\Downloads\Java.exe (PUP.Optional.BundleInstaller.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\Downloads\OnlineWeatherSetup-7D82giS.exe (PUP.Optional.Somoto) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\Downloads\OnlineWeatherSetup-au26MH6.exe (PUP.Optional.Somoto) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\Downloads\Ps1\The_Adventures_Of_Lomax-PSX-PAL.exe (PUP.Optional.OneClickDownloader.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\Local Settings\Application Data\Bundled software uninstaller\biclient (1).exe (PUP.Optional.Somoto.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\Local Settings\Application Data\Bundled software uninstaller\biclient (2).exe (PUP.Optional.Somoto.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\Local Settings\Application Data\Bundled software uninstaller\biclient (3).exe (PUP.Optional.Somoto.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\admin\Local Settings\Application Data\Bundled software uninstaller\biclient.exe (PUP.Optional.Somoto.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Windows\Installer\1397c40.msi (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\Windows\Installer\731dc7.msi (PUP.Optional.SmartBar.A) -> Enviado para a Quarentena e deletado com sucesso.

Se não tiver enganado ele transferiu os adware da quarentena do programa adwcleaner para ele mesmo?
Pedro Silva
Pedro Silva
Iniciante
Iniciante

Mensagens : 8
Reputação : 0
Data de inscrição : 11/01/2014

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Power Max Sáb 18 Jan 2014, 13:20

Se não tiver enganado ele transferiu os adware da quarentena do programa adwcleaner para ele mesmo?
Uso de CPU chega a 100% 772309 Em alguns foi isto que aconteceu, mas em vários outros casos foram removidos muitos outros problemas que estavam no seu PC.
______________________________________

Uso de CPU chega a 100% 772309 Siga também esta dica, por gentileza:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

*Depois disto é só você postar o relatório do Zoek que estará em C:\zoek-results aqui em seu tópico.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Pedro Silva Sáb 18 Jan 2014, 15:28


Zoek.exe v5.0.0.0 Updated 18-Januari-2014
Tool run by admin on 18/01/2014 at 13:51:34,09.
Microsoft Windows 7 Enterprise 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\admin\Downloads\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

18/01/2014 13:57:26 Zoek.exe System Restore Point Created Succesfully.

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{72853161-30C5-4D22-B7F9-0BBC1D38A37E} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{72853161-30C5-4D22-B7F9-0BBC1D38A37E} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A541AE1-5BF6-4665-A8A3-CFA9672E4291} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{59C0C5BD-2579-433A-BBB8-AFFD59642BAF} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{72853161-30C5-4D22-B7F9-0BBC1D38A37E} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{2A541AE1-5BF6-4665-A8A3-CFA9672E4291} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{31ad400d-1b06-4e33-a59a-90c2c140cba0} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{ae07101b-46d4-4a98-af68-0333ea26e113} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{59C0C5BD-2579-433A-BBB8-AFFD59642BAF} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{72853161-30C5-4D22-B7F9-0BBC1D38A37E} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{2A541AE1-5BF6-4665-A8A3-CFA9672E4291} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{4D2D3B0F-69BE-477A-90F5-FDDB05357975} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{82E1477C-B154-48D3-9891-33D83C26BCD3} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{EF7BD87A-8024-11E2-F316-F3E56188709B} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{4B6ACEA2-308A-4876-AD36-57CEC5B4FCC7} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{3728ba43-f94f-42a4-9e8d-00b930d1db28} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110311211154} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{398C01F1-E584-46AD-A649-4F78B435DCFE} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{AA74D58F-ACD0-450D-A85E-6C04B171C044} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{fe063412-bea4-4d76-8ed3-183be6220d17} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{0f21b1e5-5afc-43c9-9c66-515046e92ec2} deleted successfully
HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110411901110} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{72853161-30C5-4D22-B7F9-0BBC1D38A37E} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{2A541AE1-5BF6-4665-A8A3-CFA9672E4291} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\{C7AE725D-FA5C-4027-BB4C-787EF9F8248A} deleted successfully

==== Deleting Services ======================


==== FireFox Fix ======================

ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default

user.js not found
---- Lines delta modified from prefs.js ----

user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"daplinkchecker@speedbit.com\":{\"descriptor\":\"C:\\\\Program Fil
---- Lines ask.com modified from prefs.js ----

user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"daplinkchecker@speedbit.com\":{\"descriptor\":\"C:\\\\Program Fil
---- Lines Lyric modified from prefs.js ----

user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"daplinkchecker@speedbit.com\":{\"descriptor\":\"C:\\\\Program Fil
---- Lines speedbit modified from prefs.js ----

user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"daplinkchecker@speedbit.com\":{\"descriptor\":\"C:\\\\Program Fil
---- Lines gophoto.it removed from prefs.js ----
user_pref("extensions.bootstrappedAddons", "{\"gophoto@gophoto.it\":{\"version\":\"1.5\",\"type\":\"extension\",\"descriptor\":\"C:\\\\Users\\\\admin\
---- Lines gophoto.it modified from prefs.js ----

user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"daplinkchecker@disabled.com\":{\"descriptor\":\"C:\\\\Program Fil
---- FireFox user.js and prefs.js backups ----

prefs_012014_1423_.backup

ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_012014_1423_.backup

==== Deleting Files \ Folders ======================

C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\extensions\ffxtlbr@delta.com not found
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\extensions\toolbar@ask.com not found
"C:\Windows\Installer\1397c40.msi" not found
C:\Users\admin\daemonprocess.txt deleted
C:\Users\admin\.android deleted
C:\PROGRA~2\GUT6B60.tmp deleted
C:\PROGRA~2\GUM6B5F.tmp deleted
C:\PROGRA~2\Device Doctor deleted
C:\PROGRA~2\suerfi andd uKeepp deleted
C:\found.000 deleted
C:\ProgramData\FileSplitUpLoad.dll deleted
C:\ProgramData\ProductData deleted
C:\ProgramData\InstallMate deleted
C:\Users\admin\AppData\Local\funmoods_2.3.1.crx deleted
C:\Users\admin\AppData\Local\funmoods_speedial_v9.0.10.crx deleted
C:\Users\admin\AppData\Local\cache deleted
C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat deleted
C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Users\admin\Downloads\DeviceDoctor_Bundle.exe deleted
C:\Users\admin\AppData\LocalLow\store-pp.jbs deleted
C:\Windows\SysNative\rlls64.dll deleted
C:\Windows\Syswow64\InstallUtil.InstallLog deleted
C:\Windows\SysWow64\searchplugins deleted
C:\Windows\SysWow64\Extensions deleted
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\jetpack deleted
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\extensions\staged deleted
"C:\ProgramData\42ba34ab3ea12432\{4820778D-AB0D-6D18-C316-52A6A0E1D507}" deleted
"C:\ProgramData\42ba34ab3ea12432\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}" deleted
"C:\ProgramData\42ba34ab3ea12432\{CA41BB14-E67B-1653-C57B-5CA99418A866}" deleted
"C:\ProgramData\42ba34ab3ea12432\{E32743D3-5789-6E4F-3998-06FB87C9214B}" deleted
"C:\ProgramData\SpeedBit\DAP\SDCondition.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Log\DAP_BETA.LOG" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\AddonsCondition.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D\1.0.0.4_0\MediaPreview.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\CSharpDapsters.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\DapsterTools.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\fivegiganet.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\HotFileCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Ionic.Zip.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\MegaUploadCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\SpdFileCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\XSevenTo.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\YouTubeCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\zsharenet.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters\dapsters-eDapsters-20140115090709.zip" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537\1.0.0.0_0\DapInternetTab.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418\1.0.0.3_0\DapLinkCheckerPlugin.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40\1.0.5.1_0\DapRemoteControlPlugin.dll" deleted
"C:\ProgramData\42ba34ab3ea12432" deleted
"C:\ProgramData\SpeedBit" not deleted
"C:\ProgramData\SpeedBit\DAP" not deleted
"C:\ProgramData\SpeedBit\DAP\Log" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\Install" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\Log" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D\1.0.0.4_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537\1.0.0.0_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418\1.0.0.3_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40\1.0.5.1_0" not deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [10/01/2014 22:58]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{F17C1572-C9EC-4e5c-A542-D05CBB5C5A08}"="C:\Program Files (x86)\DAP\DAPFireFox" [05/05/2013 15:08]

==== Firefox Extensions ======================

ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default
- Snap.Do - %ProfilePath%\extensions\{7fd4832c-6ec0-438e-b3f7-d4fe35444f41}
- SaveSense - %ProfilePath%\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}

ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0
- Pirrit Suggestor - %ProfilePath%\extensions\suggestor@pirrit.com.xpi

==== Firefox Plugins ======================

Profilepath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default
D7324EB1EDCB8990F8522DE0311359E9 - C:\Windows\SysWOW64\npDeployJava1.dll - Java Deployment Toolkit 7.0.250.17
87132527E2256CF6683A18C4EB34DD3B - C:\Windows\system32\Wat\npWatWeb.dll - Windows Activation Technologies
341B3AE026B143DBC17BA1E1E0BAE3D6 - C:\Users\admin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
15E298B5EC5B89C5994A59863969D9FF - C:\Windows\SysWOW64\npmproxy.dll - Microsoft® Windows® Operating System


==== Deleting Files \ Folders ======================

C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\extensions\{7fd4832c-6ec0-438e-b3f7-d4fe35444f41} deleted
"C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0\extensions\suggestor@pirrit.com.xpi" deleted

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
bodfdknjhecmadheclfjkhhiofeagdbh - C:\Program Files (x86)\DAP\daplinkchecker.crx[01/02/2013 09:10]
ealchnonpofjocgofjpopjdoegbbkofj - C:\Program Files (x86)\HappyLyrics\Chrome.crx[]
ffdcfjdljhbehggjdkdioajnknjcpbjb - C:\Program Files (x86)\DAP\DAPChrome\DAPChrome6.crx[01/02/2013 09:11]
ialdollnlgfogbjjlmjkdmjdmocdhfio - C:\Program Files (x86)\DealPly\DealPly.crx[]

PirritSuggestor - admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ammfplfdkakimnibcghcebgbiiphabgc
Greatsaverr - admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\capjfkkjecfmikdokehalijgdlijgadi
Happy Lyrics - admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ealchnonpofjocgofjpopjdoegbbkofj
Closed tabs - admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\eonffnnfmbfnmjpaiigdclmfelolemah
DealPly Shopping - admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ialdollnlgfogbjjlmjkdmjdmocdhfio
YTBooKMaork - admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\jejlbcgkdhiillnedggljkagicofgkhg
YoutubeAdblocker - admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiimnpnnonchciebmgnlkmpoapipghem
Gears Of War 3 Locust Theme - admin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dhmakppdpkkikmbkocnfipafpcehohig
Download Accelerator Plus (DAP) - admin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ffdcfjdljhbehggjdkdioajnknjcpbjb
YTBooKMaork - admin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jejlbcgkdhiillnedggljkagicofgkhg
CSS VK Styles - admin\AppData\Local\Orbitum\User Data\Default\Extensions\dknfpeijjbkjekoogamecgefdalcmakj
Orbitum Speed Dial Multi - admin\AppData\Local\Orbitum\User Data\Default\Extensions\eelnejamicokabedbhnahipncgpdmekf
Auth plugin - admin\AppData\Local\Orbitum\User Data\Default\Extensions\hdpfeicgddgckmimbaednkieaehgccec
Orbitum Chat Module - admin\AppData\Local\Orbitum\User Data\Default\Extensions\kbhkpllebbhhdlgmdfmmonjjlldnfmij

==== Chrome Fix ======================

C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ealchnonpofjocgofjpopjdoegbbkofj deleted successfully
C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ialdollnlgfogbjjlmjkdmjdmocdhfio deleted successfully
C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ialdollnlgfogbjjlmjkdmjdmocdhfio_0.localstorage deleted successfully
C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\capjfkkjecfmikdokehalijgdlijgadi deleted successfully
C:\Users\admin\AppData\Local\Orbitum\User Data\Default\Extensions\eelnejamicokabedbhnahipncgpdmekf deleted successfully
C:\Users\admin\AppData\Local\Orbitum\User Data\Default\Local Storage\chrome-extension_eelnejamicokabedbhnahipncgpdmekf_0.localstorage deleted successfully
C:\Users\admin\AppData\Local\Orbitum\User Data\Default\Local Storage\chrome-extension_eelnejamicokabedbhnahipncgpdmekf_0.localstorage-journal deleted successfully
C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\eonffnnfmbfnmjpaiigdclmfelolemah deleted successfully
C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\jejlbcgkdhiillnedggljkagicofgkhg deleted successfully
C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jejlbcgkdhiillnedggljkagicofgkhg deleted successfully
C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiimnpnnonchciebmgnlkmpoapipghem deleted successfully
C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cekcjpgehmohobmdiikfnopibipmgnml deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://home.speedbit.com/?pid=%s&aid=%s"
"Default_Page_URL"="http://www.google.com"
"Use Search Asst"="yes"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]
"Default"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://www.google.com"
"SearchAssistant"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{7F4EFF06-7032-458e-AE16-1C1D8255C28A}"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
"Use Search Asst"="no"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
{7F4EFF06-7032-458e-AE16-1C1D8255C28A} Unknown Url="Not_Found"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2885833748-3473065370-1940768766-1002\Software\Microsoft\Internet Explorer\SearchScopes\{7F4EFF06-7032-458e-AE16-1C1D8255C28A} deleted successfully

==== Deleting CLSID Registry Values ======================


==== shortcuts on Users Desktops ======================

C:\Users\admin\Desktop\Download Accelerator Plus (DAP).lnk - C:\Program Files (x86)\DAP\DAP.exe
C:\Users\admin\Desktop\Memory Improve Master.lnk - C:\Program Files (x86)\Memory Improve Master\MemoryImproveMaster.exe
C:\Users\Mcx1-ADMIN-PC\Desktop\Memory Improve Master.lnk - C:\Program Files (x86)\Memory Improve Master\MemoryImproveMaster.exe

==== shortcuts on All Users Desktop ======================

C:\Users\Public\Desktop\Adobe Reader X.lnk - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe
C:\Users\Public\Desktop\Audacity.lnk - C:\Program Files (x86)\Audacity\audacity.exe
C:\Users\Public\Desktop\avast Internet Security.lnk -
C:\Users\Public\Desktop\avast SafeZone.lnk -
C:\Users\Public\Desktop\DAEMON Tools Ultra.lnk - C:\Program Files (x86)\DAEMON Tools Ultra\DTLauncher.exe
C:\Users\Public\Desktop\DS3 Tool.lnk - C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe
C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Public\Desktop\IObit Uninstaller.lnk - C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe
C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.130\McUICnt.exe SecurityScanner.dll
C:\Users\Public\Desktop\Pokemon Online.lnk - C:\Program Files (x86)\Pokemon Online\Pokemon-Online.exe
C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe
C:\Users\Public\Desktop\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe
C:\Users\Public\Desktop\µTorrent.lnk -

==== shortcuts in Users Start Menu ======================

C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall Programs.lnk - C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe
C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames\Eden Eternal PT\Compre Aeria Points.lnk - C:\AeriaGames\EdenEternalPT\Get Aeria Points.URL
C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames\Eden Eternal PT\Desinstalar.lnk - C:\AeriaGames\EdenEternalPT\Uninst.exe
C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames\Eden Eternal PT\Jogue Eden Eternal PT.lnk - C:\AeriaGames\EdenEternalPT\aeria_launcher.exe eept
C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames\Eden Eternal PT\Option.lnk - C:\AeriaGames\EdenEternalPT\CONFIG.exe
C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames\Eden Eternal PT\Website de Eden Eternal PT.lnk - C:\AeriaGames\EdenEternalPT\Eden Eternal PT Website.URL
C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Mahjong Games\Uninstall.lnk - C:\Users\admin\AppData\Local\WebPlayer\Uninstall.exe
C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Online Weather\Uninstall.lnk - C:\Users\admin\AppData\Local\WebPlayer\Uninstall.exe

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AeriaGames\Ignite.lnk - C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast\avast Internet Security.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast\avast SafeZone.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeMeter\Tools\CodeMeter Command Prompt.lnk - C:\Windows\System32\cmd.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Device Doctor\Device Doctor on the Web.lnk - C:\Program Files (x86)\Device Doctor\HomePage.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Device Doctor\Device Doctor.lnk - C:\Program Files (x86)\Device Doctor\DeviceDoctor.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Device Doctor\Uninstall Device Doctor.lnk - C:\Program Files (x86)\Device Doctor\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files Fixer\Desinstalar Dll-Files Fixer.lnk - C:\Program Files (x86)\Dll-Files.com Fixer\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files Fixer\Dll-Files Fixer.lnk - C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Mahjong Games\Uninstall.lnk - C:\Users\admin\AppData\Local\WebPlayer\Uninstall.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller\Help.lnk - C:\Program Files (x86)\IObit\IObit Uninstaller\help.html
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller\IObit Uninstaller.lnk - C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller\Uninstall IObit Uninstaller.lnk - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallDisplay.exe uninstall_start
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware\Desinstalar Malwarebytes Anti-Malware.lnk - C:\Program Files (x86)\Malwarebytes' Anti-Malware\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware\Malwarebytes Anti-Malware Help.lnk - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware\Malwarebytes Anti-Malware.lnk - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk - C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\chameleon.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Memory Improve Master\Memory Improve Master.lnk - C:\Program Files (x86)\Memory Improve Master\MemoryImproveMaster.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Memory Improve Master\Uninstall Memory Improve Master.lnk - C:\Program Files (x86)\Memory Improve Master\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Memory Improve Master\User Help.lnk - C:\Program Files (x86)\Memory Improve Master\Help.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MKV Player\MKV Player.lnk - C:\Program Files (x86)\MKV Player\MKV Player.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MotioninJoy\DS3 Tool.lnk - C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MotioninJoy\Uninstall.lnk - C:\Program Files\MotioninJoy\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Alternative\Media Player Classic.lnk - C:\Program Files (x86)\Real Alternative\Media Player Classic\mplayerc.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Alternative\Configuration\RealMedia.lnk - C:\Program Files (x86)\Real Alternative\settings.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Alternative\Help\FAQ.lnk - C:\Program Files (x86)\Real Alternative\Info\faq.htm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Alternative\Uninstall\Uninstall Real Alternative.lnk - C:\Program Files (x86)\Real Alternative\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RTP RPG Maker VX\Desinstalar.lnk - C:\Program Files (x86)\Common Files\Enterbrain\RGSS2\RPGVX\uninst.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WiFi Protector\WiFi Protector.lnk - C:\Program Files (x86)\WiFi Protector\wifiProtLauncher.exe --launchGUI

==== shortcuts in Quick Launch ======================

C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Dll-Files Fixer.lnk - C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\DS3 Tool.lnk - C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\hao123.lnk - C:\Users\admin\AppData\Roaming\baidu\hao123-br\hao123.1.0.0.1101.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\portaldosites.lnk - C:\Users\admin\AppData\Local\Beamrise\Application\beamrise.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\hao123.lnk - C:\Users\admin\AppData\Roaming\baidu\hao123-br\hao123.1.0.0.1101.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Uninstall Programs.lnk - C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Download Accelerator Plus (DAP).lnk - C:\Program Files (x86)\DAP\DAP.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Media Player Classic.lnk - C:\Program Files (x86)\Real Alternative\Media Player Classic\mplayerc.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Word 2010.lnk - C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\wordicon.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mobogenie.lnk - C:\Program Files (x86)\Mobogenie\Mobogenie.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Mcx1-ADMIN-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Mcx1-ADMIN-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\user2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\user2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\user2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\user2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\user2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2FD9C0A5B9838449838816A28001F4B deleted successfully
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google\Chrome\ExtensionInstallForcelist deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\ealchnonpofjocgofjpopjdoegbbkofj deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\ialdollnlgfogbjjlmjkdmjdmocdhfio deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{9525F23F-47EB-4348-8200-DEB0DD896E9B} deleted successfully
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\{40325b7b-d0fc-4a48-b2ef-e67d5bc33747} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WPM deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Device Doctor_is1 deleted successfully
HKEY_CURRENT_USER\Software\Microsoft\Installer\Products\F32F5259BE7484342800ED0BDD98E6B9 deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\Mcx1-ADMIN-PC\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0CARKPB3 will be deleted at reboot
C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYGYTELE will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\kyshtx6x.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully
C:\Users\admin\AppData\Local\Orbitum\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=692 folders=104 71457407 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Mcx1-ADMIN-PC\AppData\Local\Temp emptied successfully
C:\Users\Public\AppData\Local\Temp emptied successfully
C:\Users\user2\AppData\Local\Temp emptied successfully
C:\Users\USURIO~1\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Users\admin\AppData\Local\Temp will be emptied at reboot
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\admin\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\ProgramData\SpeedBit\DAP\Log\DAP_BETA.LOG" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters\dapsters-eDapsters-20140115090709.zip" not found
"C:\ProgramData\SpeedBit" not found
"C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0CARKPB3" not found
"C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYGYTELE" not found

==== EOF on 18/01/2014 at 14:37:04,75 ======================
Pedro Silva
Pedro Silva
Iniciante
Iniciante

Mensagens : 8
Reputação : 0
Data de inscrição : 11/01/2014

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Power Max Sáb 18 Jan 2014, 17:02

Uso de CPU chega a 100% 772309  Clique com o botão direito do mouse no Zoek.exe e selecione [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]
 
Uso de CPU chega a 100% 772309 Copie todo este script que te passei e cole-o no espaço em branco do Zoek.

* Clique [Run Script]
 
*Durante o scan uma mensagem parecida com esta abaixo será apresentada na qual você poderá ir acompanhando o progresso do escaneamento. Aguarde o término...pode demorar!

Zoek.exe is running now.
Do not start any browser windows, they will be closed automatically.
Please wait! This window will close when finished.
A logfile will open afterwards and can also be found on your systemdrive as zoek-results.log
*Caso a reinicialização do PC seja solicitada, clique [OK]

Uso de CPU chega a 100% 772309  Poste o novo log do Zoek que estará em C:\zoek-results.txt
em sua próxima resposta.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Pedro Silva Sáb 25 Jan 2014, 18:41


Zoek.exe v5.0.0.0 Updated 25-Januari-2014
Tool run by admin on 25/01/2014 at 18:29:17,25.
Microsoft Windows 7 Enterprise 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\admin\Downloads\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

25/01/2014 18:30:47 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== FireFox Fix ======================

Deleted from C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.baixaki.com.br/portal/?utm_source=core&utm_medium=ppi&utm_campaign=portal");
user_pref("browser.newtab.url", "");
user_pref("browser.search.order.1", "");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

Deleted from C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0\prefs.js:

Added to C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default

user.js not found
---- Lines {7fd4832c-6ec0-438e-b3f7-d4fe35444f41} modified from prefs.js ----

user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"daplinkchecker@disabled.com\":{\"descriptor\":\"C:\\\\Program Fil
---- FireFox user.js and prefs.js backups ----

prefs_012014_1832_.backup

ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_012014_1832_.backup

==== Deleting Files \ Folders ======================

C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\extensions\{7fd4832c-6ec0-438e-b3f7-d4fe35444f41} not found
"C:\ProgramData\SpeedBit\DAP\Log\DAP_BETA.LOG" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\AddonsCondition.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D\1.0.0.4_0\MediaPreview.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\CSharpDapsters.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\DapsterTools.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\fivegiganet.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\HotFileCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Ionic.Zip.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\MegaUploadCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\SpdFileCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\XSevenTo.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\YouTubeCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\zsharenet.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters\dapsters-eDapsters-20140115090709.zip" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537\1.0.0.0_0\DapInternetTab.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418\1.0.0.3_0\DapLinkCheckerPlugin.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40\1.0.5.1_0\DapRemoteControlPlugin.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Log\DAP_BETA.LOG" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\AddonsCondition.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D\1.0.0.4_0\MediaPreview.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\CSharpDapsters.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\DapsterTools.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\fivegiganet.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\HotFileCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Ionic.Zip.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\MegaUploadCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\SpdFileCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\XSevenTo.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\YouTubeCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\zsharenet.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters\dapsters-eDapsters-20140115090709.zip" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537\1.0.0.0_0\DapInternetTab.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418\1.0.0.3_0\DapLinkCheckerPlugin.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40\1.0.5.1_0\DapRemoteControlPlugin.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D\1.0.0.4_0\MediaPreview.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\CSharpDapsters.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\DapsterTools.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\fivegiganet.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\HotFileCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Ionic.Zip.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\MegaUploadCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\SpdFileCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\XSevenTo.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\YouTubeCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\zsharenet.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters\dapsters-eDapsters-20140115090709.zip" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537\1.0.0.0_0\DapInternetTab.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418\1.0.0.3_0\DapLinkCheckerPlugin.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40\1.0.5.1_0\DapRemoteControlPlugin.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D\1.0.0.4_0\MediaPreview.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\CSharpDapsters.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\DapsterTools.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\fivegiganet.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\HotFileCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Ionic.Zip.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\MegaUploadCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\SpdFileCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\XSevenTo.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\YouTubeCom.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\zsharenet.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters\dapsters-eDapsters-20140115090709.zip" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537\1.0.0.0_0\DapInternetTab.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418\1.0.0.3_0\DapLinkCheckerPlugin.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40\1.0.5.1_0\DapRemoteControlPlugin.dll" deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters\dapsters-eDapsters-20140115090709.zip" not deleted
"C:\ProgramData\SpeedBit\DAP" not deleted
"C:\ProgramData\SpeedBit\DAP\Log" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\Install" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\Log" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D\1.0.0.4_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537\1.0.0.0_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418\1.0.0.3_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40\1.0.5.1_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Log" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\Install" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\Log" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D\1.0.0.4_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537\1.0.0.0_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418\1.0.0.3_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40\1.0.5.1_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\Install" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\Log" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D\1.0.0.4_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537\1.0.0.0_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418\1.0.0.3_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40\1.0.5.1_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D\1.0.0.4_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537\1.0.0.0_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418\1.0.0.3_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40\1.0.5.1_0" not deleted
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters" not deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [10/01/2014 22:58]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{F17C1572-C9EC-4e5c-A542-D05CBB5C5A08}"="C:\Program Files (x86)\DAP\DAPFireFox" [19/01/2014 21:53]

==== Firefox Extensions ======================

ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default
- SaveSense - %ProfilePath%\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}

==== Firefox Plugins ======================

Profilepath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default
87132527E2256CF6683A18C4EB34DD3B - C:\Windows\system32\Wat\npWatWeb.dll - Windows Activation Technologies
341B3AE026B143DBC17BA1E1E0BAE3D6 - C:\Users\admin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
15E298B5EC5B89C5994A59863969D9FF - C:\Windows\SysWOW64\npmproxy.dll - Microsoft® Windows® Operating System


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
ffdcfjdljhbehggjdkdioajnknjcpbjb - C:\Program Files (x86)\DAP\DAPChrome\DAPChrome6.crx[02/05/2013 13:37]

PirritSuggestor - admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ammfplfdkakimnibcghcebgbiiphabgc
Gears Of War 3 Locust Theme - admin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dhmakppdpkkikmbkocnfipafpcehohig
Download Accelerator Plus (DAP) - admin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ffdcfjdljhbehggjdkdioajnknjcpbjb
Google Wallet - admin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
CSS VK Styles - admin\AppData\Local\Orbitum\User Data\Default\Extensions\dknfpeijjbkjekoogamecgefdalcmakj
Auth plugin - admin\AppData\Local\Orbitum\User Data\Default\Extensions\hdpfeicgddgckmimbaednkieaehgccec
Orbitum Chat Module - admin\AppData\Local\Orbitum\User Data\Default\Extensions\kbhkpllebbhhdlgmdfmmonjjlldnfmij

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://home.speedbit.com/?pid=%s&aid=%s"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{7F4EFF06-7032-458e-AE16-1C1D8255C28A}"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
{7F4EFF06-7032-458e-AE16-1C1D8255C28A} Speedbit Url="http://home.speedbit.com/search.aspx?site=shdefault&pid=%s&aid=%s&shr=%d&q={searchTerms}"

==== Reset Google Chrome ======================

C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully
C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences was reset successfully
C:\Users\admin\AppData\Local\Orbitum\User Data\Default\Preferences was reset successfully
C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 1\Web Data was reset successfully
C:\Users\admin\AppData\Local\Orbitum\User Data\Default\Web Data was reset successfully

==== Reset IE Proxy ======================

Value(s) before fix:
"ProxyOverride"=""
"ProxyEnable"=dword:00000000

Value(s) after fix:
"ProxyEnable"=dword:00000000

==== C:\zoek_backup content ======================

C:\zoek_backup (files=1596 folders=169 98449495 bytes)

==== After Reboot ======================

==== Deleting Files / Folders ======================

"C:\ProgramData\SpeedBit\DAP\Log\DAP_BETA.LOG" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters\dapsters-eDapsters-20140115090709.zip" not found
"C:\ProgramData\SpeedBit\DAP\Log\DAP_BETA.LOG" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters\dapsters-eDapsters-20140115090709.zip" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters\dapsters-eDapsters-20140115090709.zip" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters\dapsters-eDapsters-20140115090709.zip" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters\dapsters-eDapsters-20140115090709.zip" not found
"C:\ProgramData\SpeedBit\DAP" not found
"C:\ProgramData\SpeedBit\DAP\Log" not found
"C:\ProgramData\SpeedBit\DAP\Plugins" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\Install" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\Log" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\08D29C25-8256-4454-9E93-A39DCAFB043D\1.0.0.4_0" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\Dapsters" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\211A24A5-08E2-4413-8BFF-C16F80CCB537\1.0.0.0_0" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\B0FE9480-9E77-4c65-BF2F-855F9D750418\1.0.0.3_0" not found
"C:\ProgramData\SpeedBit\DAP\Plugins\B775A1D0-4882-4577-B251-0DAC64A08E40\1.0.5.1_0" not found

==== EOF on 25/01/2014 at 18:37:42,78 ======================

Desculpa pela demora é que minhas aulas começaram e fiquei um tempo sem entrar no PC
Pedro Silva
Pedro Silva
Iniciante
Iniciante

Mensagens : 8
Reputação : 0
Data de inscrição : 11/01/2014

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Power Max Sáb 25 Jan 2014, 19:29

isso aí!  Mais problemas foram removidos.
________________________________________________

Uso de CPU chega a 100% 772309 |- Baixe: < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] >  < [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]> ( ... de Nicolas Coolman )
|- Salve-o no disco local! ( C ou D )
|- Desabilite temporariamente seu antivírus para evitar conflitos e execute "ZHPDiag2.exe",para instalar a ferramenta.
 
[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]
 
|- Execute o ícone do pergaminho. ( ZHPDiag )
 
[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]
 
|- Clique "SEARCH" ou "PESQUISAR" e aguarde a conclusão!
 
[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]
 
|- Clique OK e, ao concluir, poste o relatório ZHPDiag.txt
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Pedro Silva Seg 27 Jan 2014, 16:47

~ Relatório do ZHPDiag v2014.1.25.26 - Nicolas Coolman (25/01/2014)
~ Iniciado por admin (27/01/2014 16:42:30)
~ Endereço do Website : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
~ Fóruns de suporte gratuito para desinfecção : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
~ Tradução pelo utilizador
~ Estatuto da versão :
~ Lista Branca : Ativado pelo programa
~ Elevação dos Privilégios : OK
~ Controle de Conta de Utilizador : Deactivate by program


---\\ Navegadores Internet
MSIE: Internet Explorer v11.0.9600.16476
GCIE: Google Chrome v32.0.1700.76 (Defaut)

---\\ Informações sobre os produtos Windows
~ Langage: Portugais
Windows 7 Enterprise, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Softwares de proteçao do sistema
avast! Internet Security v9.0.2011
Malwarebytes Anti-Malware versão 1.75.0.1300
McAfee Security Scan Plus v3.8.130.10
Windows Defender W7

---\\ Softwares d'optimização do sistema

---\\ Softwares de partilha do PeerToPeer (P2P)
Pando Media Booster
µTorrent v3.1.2 =>P2P.µTorrent

---\\ Monitoramento dos softwares
Adobe Flash Player 12 Plugin
Adobe Reader X
Java 7 Update 51

---\\ Informações sobre o sistema
~ Processor: Intel64 Family 6 Model 15 Stepping 13, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3963 MB (65% free)
System Restore: Activé (Enable)
System drive C: has 526 GB (88%) free of 596 GB

---\\ Modo de conexão ao sistema
~ Computer Name: ADMIN-PC
~ User Name: admin
~ All Users Names: Mcx1-ADMIN-PC, HomeGroupUser$, Convidado, Administrador, admin,
~ Unselected Option: 045,061,O62,065,066,080,O82,089
Logged in as Administrator

---\\ As variáveis de ambiente
~ System Unit : C:\
~ %AppZHP% : C:\Users\admin\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\admin\AppData\Roaming\
~ %Desktop% : C:\Users\admin\Desktop\
~ %Favorites% : C:\Users\admin\Favorites\
~ %LocalAppData% : C:\Users\admin\AppData\Local\
~ %StartMenu% : C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumeração das unidades dos discos
C: Hard drive, Flash drive, Thumb drive (Free 526 Go of 596 Go)
D: CD-ROM drive (Not Inserted)



---\\ Estado do Centro de Segurança do Windows
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyGames: Modified
~ Security Center: 49 Legitimates Filtered in 00mn 00s



---\\ Pesquisa particular de ficheiros genéricos
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Windows Explorer.) (.25/02/2011 - 03:19:30.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) (.13/07/2009 - 22:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.9B6678DB9C6A232C5A84D2FDFFF8B0E1] - (.Microsoft Corporation - Internet Extensions para Win32.) (.26/11/2013 - 04:07:57.) -- C:\Windows\System32\wininet.dll [2334208]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) (.21/11/2010 - 00:24:29.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) (.21/11/2010 - 00:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.79059559E89D06E8B80CE2944BE20228] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.27/09/2013 - 22:09:10.) -- C:\Windows\system32\Drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.13/07/2009 - 22:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/07/2009 - 20:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 00:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) (.13/07/2009 - 20:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.13/07/2009 - 21:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.26/04/2011 - 23:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 00:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) (.12/04/2013 - 11:45:08.) -- C:\Windows\system32\Drivers\ntfs.sys [1656680]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) (.13/07/2009 - 21:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 00:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/11/2010 - 00:25:07.) -- C:\Windows\system32\Drivers\rdpdr.sys [165888]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.13/07/2009 - 21:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 00:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Generic Processes: Scanned in 00mn 00s



---\\ Estatuto dos ficheiros ocultos (Oculto/Total)
~ Mes images (My Pictures) : 2/5
~ Mes musiques (My Musics) : 1/9
~ Mes Favoris (My Favorites) : 1/8
~ Mes Documents (My Documents) : 1/101
~ Mon Bureau (My Desktop) : 2/110
~ Menu demarrer (Programs) : 1/48
~ Hidden Files: Scanned in 00mn 00s



---\\ Processos lançados
[MD5.CBB55C7BED11FE4F995159BCA9904A29] - (.Somoto - FilesFrog.com Update Checker.) -- C:\Users\admin\AppData\Local\FilesFrog Update Checker\update_checker.exe [208952] [PID.3512] =>Adware.MegaSearch
[MD5.10E89F598469C60D8C87A8218089A87D] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\admin\AppData\Local\Akamai\netsession_win.exe [4489472] [PID.3616]
[MD5.B4AF5086F5B4D3966D2EDAAEC797522D] - (.Speedbit Ltd. - Download Accelerator Plus (DAP).) -- C:\Program Files (x86)\DAP\DAP.exe [3865232] [PID.3792]
[MD5.5FC1063C1532F31A21012BA59C06A2EE] - (.BitTorrent Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe [802136] [PID.3928] =>P2P.BitTorrent
[MD5.6EC9C45857DE9E9F73A026F89BDDF49B] - (.WIBU-SYSTEMS AG - CodeMeter Control Center.) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe [6904208] [PID.1136]
[MD5.AFEBF9E0B223FF04709F747C172D3540] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024] [PID.2140]
[MD5.80086ED442941DE2CA18CB6DAE8C1422] - (.Aeria Games & Entertainment - Aeria Ignite.) -- C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656] [PID.2664]
[MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336] [PID.2892]
[MD5.01B4FB000BF4ABDD49C108DF00645995] - (.Speedbit Ltd. - SBUpdate Module.) -- C:\Program Files (x86)\Common Files\SpeedBit\SBUpdate\SBUpdate.exe [92800] [PID.2264]
[MD5.A80C173AC5C75706BB74AE4D78F2A53D] - (.Microsoft Corporation - Windows Media Player.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe [164864] [PID.3336]
[MD5.CA25CAEEBDBE25D85565877219F684F8] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8339968] [PID.1276]
[MD5.C964E403730469D3F8DDFEA9BE80107A] - (.No owner - WiFi Protector Service.) -- C:\Program Files (x86)\WiFi Protector\wifiProtService.exe [1638728] [PID.360]
[MD5.D74884939D53612FD84AC82C59CCFE27] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344] [PID.1268]
[MD5.1247D6B0F35AA93774CFBFD73203D857] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [113704] [PID.1396]
[MD5.8917785AF3DFAABE173F7BF5E399A9EB] - (.M-Audio - Axiom Audio Device Monitor.) -- C:\Program Files (x86)\M-Audio\Axiom\AudioDevMon.exe [1636872] [PID.1288]
[MD5.1C15404EA8FC42DAB8A7B3765ED53E58] - (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe [2304912] [PID.2376]
~ Processes Running: Scanned in 00mn 00s



---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3)
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\prefs.js
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0\prefs.js
M2 - MFEP: prefs.js [admin - kyshtx6x.default\{8b337819-d1e8-48d3-8178-168ae8c99c36}] [] SaveSense v3.0 (..) =>PUP.SaveSense
~ Firefox Browser: 13 Legitimates Filtered in 00mn 00s



---\\ Internet Explorer, Arranque, Pesquisa, URLSearchHook( gancho de URL), Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Hijacker.NationZoom
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Hijacker.NationZoom
~ IE Browser: 25 Legitimates Filtered in 00mn 00s



---\\ Internet Explorer, Gestão do Proxy (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride =
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Redireção do ficheiro Hosts (01)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21



---\\ Browser Helper Objects do navegador (02)
O2 - BHO: LinkVerifierBHO [64Bits] - {D5974A72-C81C-4DC3-BE77-A8A7BBC8864E} . (.Speedbit Ltd. - DAP Link Verification Extension.) -- C:\Program Files (x86)\DAP\LinkVerifier.dll
~ BHO: 11 Legitimates Filtered in 00mn 00s



---\\ Barras do Internet Explorer (03))
O3 - Toolbar: avast! Online Security - [HKLM]{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
~ Toolbar: Scanned in 00mn 00s



---\\ Outras conexões do utilizador (04)
O4 - GS\Desktop [Public]: Backround Cycler.lnk . (.William McCormick - Backround_Cycler.) -- C:\Program Files (x86)\Backround Cycler\Backround Cycler.exe
O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Public]: IObit Uninstaller.lnk . (.IObit - Uninstall Programs.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe
O4 - GS\Desktop [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee.) -- C:\Program Files\McAfee Security Scan\3.8.130\McUICnt.exe
O4 - GS\Desktop [Public]: Pokemon Online.lnk . (...) -- C:\Program Files (x86)\Pokemon Online\Pokemon-Online.exe
O4 - GS\Desktop [Public]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - GS\Desktop [Mcx1-ADMIN-PC]: Download Accelerator Plus (DAP).lnk . (.Speedbit Ltd. - Download Accelerator Plus (DAP).) -- C:\Program Files (x86)\DAP\DAP.exe
O4 - GS\Desktop [Mcx1-ADMIN-PC]: Memory Improve Master.lnk . (.Memory Improve Master Studio - Memory Improve Master.) -- C:\Program Files (x86)\Memory Improve Master\MemoryImproveMaster.exe
O4 - GS\Desktop [Mcx1-ADMIN-PC]: My DAP Downloads.lnk . (...) -- C:\Users\admin\Downloads
O4 - GS\QuickLaunch [admin]: Dll-Files Fixer.lnk . (...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.)
O4 - GS\QuickLaunch [admin]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [admin]: hao123.lnk . (...) -- C:\Users\admin\AppData\Roaming\baidu\hao123-br\hao123.1.0.0.1101.exe (.not file.) =>Adware.BDSearch
O4 - GS\QuickLaunch [admin]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [admin]: portaldosites.lnk . (...) -- C:\Users\admin\AppData\Local\Beamrise\Application\beamrise.exe (.not file.) =>Hijacker.Beamrise
O4 - GS\QuickLaunch [admin]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - GS\TaskBar [admin]: Download Accelerator Plus (DAP).lnk . (.Speedbit Ltd. - Download Accelerator Plus (DAP).) -- C:\Program Files (x86)\DAP\DAP.exe
O4 - GS\TaskBar [admin]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\TaskBar [admin]: Media Player Classic.lnk . (.Gabest - Media Player Classic.) -- C:\Program Files (x86)\Real Alternative\Media Player Classic\mplayerc.exe
O4 - GS\TaskBar [admin]: Mobogenie.lnk . (...) -- C:\Program Files (x86)\Mobogenie\Mobogenie.exe (.not file.) =>PUP.Mobogenie
O4 - GS\Program [admin]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\SystemTools [admin]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\SendTo [admin]: Transferência de Arquivo Bluetooth.LNK . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\fsquirt.exe
O4 - GS\Desktop [admin]: Memory Improve Master.lnk . (.Memory Improve Master Studio - Memory Improve Master.) -- C:\Program Files (x86)\Memory Improve Master\MemoryImproveMaster.exe
~ Global Startup: 83 Legitimates Filtered in 00mn 00s



---\\ Aplicações iniciadas por registo & pastas (04)
O4 - GS\Startup [Public]: CodeMeter Control Center.lnk . (.WIBU-SYSTEMS AG - CodeMeter Control Center.) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
O4 - GS\Startup [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
O4 - HKCU\..\Run: [Pando Media Booster] . (.No owner - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [Free Mahjong Games] C:\Users\admin\AppData\Local\WebPlayer\Free Mahjong Games\WebPlayer.exe (.not file.) =>Adware.SocialSkinz
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKCU\..\Run: [WiFi Protector] . (.No owner - WiFi Protector Launcher.) -- C:\Program Files (x86)\WiFi Protector\WiFiProtLauncher.exe
O4 - HKCU\..\Run: [Device Doctor] C:\Program Files (x86)\Device Doctor\DDLauncher.exe (.not file.)
O4 - HKCU\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\admin\AppData\Local\Akamai\netsession_win.exe
O4 - HKCU\..\Run: [DownloadAccelerator] . (.Speedbit Ltd. - Download Accelerator Plus (DAP).) -- C:\Program Files (x86)\DAP\DAP.exe
O4 - HKCU\..\Run: [Memory Improve Master] . (.Memory Improve Master Studio - Memory Improve Master.) -- C:\Program Files (x86)\Memory Improve Master\MemoryImproveMaster.exe
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - HKCU\..\Run: [Backround Cycler] . (.William McCormick - Backround_Cycler.) -- C:\Program Files (x86)\Backround Cycler\Backround Cycler.exe
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKLM\..\Wow6432Node\Run: [Aeria Ignite] . (.Aeria Games & Entertainment - Aeria Ignite.) -- C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKUS\S-1-5-21-2885833748-3473065370-1940768766-1002\..\Run: [Pando Media Booster] . (.No owner - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - HKUS\S-1-5-21-2885833748-3473065370-1940768766-1002\..\Run: [Free Mahjong Games] C:\Users\admin\AppData\Local\WebPlayer\Free Mahjong Games\WebPlayer.exe (.not file.) =>Adware.SocialSkinz
O4 - HKUS\S-1-5-21-2885833748-3473065370-1940768766-1002\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKUS\S-1-5-21-2885833748-3473065370-1940768766-1002\..\Run: [WiFi Protector] . (.No owner - WiFi Protector Launcher.) -- C:\Program Files (x86)\WiFi Protector\WiFiProtLauncher.exe
O4 - HKUS\S-1-5-21-2885833748-3473065370-1940768766-1002\..\Run: [Device Doctor] C:\Program Files (x86)\Device Doctor\DDLauncher.exe (.not file.)
O4 - HKUS\S-1-5-21-2885833748-3473065370-1940768766-1002\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\admin\AppData\Local\Akamai\netsession_win.exe
O4 - HKUS\S-1-5-21-2885833748-3473065370-1940768766-1002\..\Run: [DownloadAccelerator] . (.Speedbit Ltd. - Download Accelerator Plus (DAP).) -- C:\Program Files (x86)\DAP\DAP.exe
O4 - HKUS\S-1-5-21-2885833748-3473065370-1940768766-1002\..\Run: [Memory Improve Master] . (.Memory Improve Master Studio - Memory Improve Master.) -- C:\Program Files (x86)\Memory Improve Master\MemoryImproveMaster.exe
O4 - HKUS\S-1-5-21-2885833748-3473065370-1940768766-1002\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - HKUS\S-1-5-21-2885833748-3473065370-1940768766-1002\..\Run: [Backround Cycler] . (.William McCormick - Backround_Cycler.) -- C:\Program Files (x86)\Backround Cycler\Backround Cycler.exe
~ Application: Scanned in 00mn 00s



---\\ Site na zona confiavél do Internet Explorer (05)
O15 - Trusted Zone: [HKCU\...\Domains] http.aeriagames.com
~ IE Zone Confiance: Scanned in 00mn 00s



---\\ Alteração Dominio/Clientes DNS (017)
O17 - HKLM\System\CCS\Services\Tcpip\..\{143841D7-D947-4465-9757-51E014C651F6}: DhcpNameServer = 189.6.0.138 189.6.0.137 201.6.4.116
O17 - HKLM\System\CS1\Services\Tcpip\..\{143841D7-D947-4465-9757-51E014C651F6}: DhcpNameServer = 189.6.0.138 189.6.0.137 201.6.4.116
O17 - HKLM\System\CS2\Services\Tcpip\..\{143841D7-D947-4465-9757-51E014C651F6}: DhcpNameServer = 189.6.0.138 189.6.0.137 201.6.4.116
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 189.6.0.138 189.6.0.137 201.6.4.116
~ Domain: Scanned in 00mn 00s



---\\ Protocolo adicional (018)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Lista dos serviços NT não Microsoft e não desativados (023)
O23 - Service: WiFi Protector Service (wifiProtService) . (.No owner - WiFi Protector Service.) - C:\Program Files (x86)\WiFi Protector\wifiProtService.exe
~ Services: 9 Legitimates Filtered in 00mn 10s



---\\ Tarefas planificadas automaticamente (039)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\AmiUpdXp.job [356] =>PUP.Software.Updater
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\DLL-Files FixerASKUSER.job [284]
[MD5.6114F49638C3D7423368FECFED3E363F] [APT] [AmiUpdXp] (.Amonetizé Ltd.) -- C:\Users\admin\AppData\Local\SwvUpdater\Updater.exe [289832] =>PUP.Software.Updater
[MD5.CBB55C7BED11FE4F995159BCA9904A29] [APT] [SomotoUpdateCheckerAutoStart] (.Somoto.) -- C:\Users\admin\AppData\Local\FilesFrog Update Checker\update_checker.exe [208952] =>Adware.MegaSearch
[MD5.C964E403730469D3F8DDFEA9BE80107A] [APT] [WiFiProtLauncher] (...) -- C:\Program Files (x86)\WiFi Protector\wifiProtService.exe [1638728]
[MD5.00000000000000000000000000000000] [APT] [WinZipDriverUpdaterRunAtStartup] (...) -- C:\Program Files (x86)\WinZip Driver Updater\winzipdu.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [WinZipDriverUpdater_UPDATES] (...) -- C:\Program Files (x86)\WinZip Driver Updater\winzipdu.exe (.not file.) [0]
~ Scheduled Task: 25 Legitimates Filtered in 00mn 03s



---\\ Drivers lançados ao arranque do sistema (041)
O41 - Driver: (Bfilter) . (.Baidu, Inc. - Baidu Antivirus Minifilter Driver.) - C:\Windows\system32\drivers\Bfilter.sys =>Adware.BDSearch
O41 - Driver: (Bfmon) . (.Baidu, Inc. - Baidu FS Monitor Driver.) - C:\Windows\system32\drivers\Bfmon.sys =>Adware.BDSearch
O41 - Driver: (Bprotect) . (.Baidu, Inc. - Baidu Antivirus Selfprotect Driver.) - C:\Windows\system32\drivers\Bprotect.sys =>Adware.BDSearch
~ Drivers: 87 Legitimates Filtered in 00mn 00s



---\\ Software instalados (042)
O42 - Logiciel: Backround Cycler 5.0 - (.William McCormick.) [HKLM][64Bits] -- {9DF17CBC-39EE-437B-8E89-2C0B0BC32CF2}_is1
O42 - Logiciel: Download Accelerator Plus (DAP) - (.Speedbit Ltd..) [HKLM][64Bits] -- Download Accelerator Plus (DAP)
O42 - Logiciel: Eden Eternal PT - (...) [HKLM][64Bits] -- Eden Eternal PT
O42 - Logiciel: Free Mahjong Games - (...) [HKCU][64Bits] -- Free Mahjong Games
O42 - Logiciel: Hao123-Client - (.Baidu Online Network Technology (Beijing) Co., Ltd..) [HKCU][64Bits] -- hao123desk-international =>Adware.BDSearch
O42 - Logiciel: Memory Improve Master Free Version v6.1.2.369 - (.Memory Improve Master Studio..) [HKLM][64Bits] -- Memory Improve Master Free Version_is1
O42 - Logiciel: SaveSense (remove only) - (.SaveSense.) [HKLM][64Bits] -- SaveSense =>PUP.SaveSense
O42 - Logiciel: WiFi Protector - (.Optimal Software s.r.o.) [HKLM][64Bits] -- wifiProt-SL_is1
~ Logic: 32 Legitimates Filtered in 00mn 02s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\Baidu Security] =>Adware.BDSearch
[HKCU\Software\Device Doctor]
[HKCU\Software\IncrediMail]
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKCU\Software\Media Get LLC] =>PUP.MediaGet
[HKCU\Software\NeoPop]
[HKCU\Software\Pando Networks]
[HKCU\Software\PlogueBidule]
[HKCU\Software\PluginAddon]
[HKCU\Software\Psygnosis]
[HKCU\Software\Somoto] =>Adware.MegaSearch
[HKCU\Software\SpeedBit]
[HKLM\Software\Wow6432Node\Baidu Security] =>Adware.BDSearch
[HKLM\Software\Wow6432Node\Baidu_Drp_pos] =>Adware.BDSearch
[HKLM\Software\Wow6432Node\Pando Networks]
[HKLM\Software\Wow6432Node\SpeedBit]
~ Key Software: 328 Legitimates Filtered in 00mn 02s



---\\ Conteúdo das pastas Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 26/01/2014 - 01:15:01 - [1,270] ----D C:\Program Files (x86)\Backround Cycler
O43 - CFD: 26/01/2014 - 12:00:51 - [0] ----D C:\Program Files (x86)\Baidu Security =>Adware.BDSearch
O43 - CFD: 27/07/2013 - 00:31:50 - [0,293] ----D C:\Program Files (x86)\Driver LM
O43 - CFD: 12/01/2014 - 00:08:03 - [9,534] ----D C:\Program Files (x86)\Memory Improve Master
O43 - CFD: 27/04/2013 - 12:30:21 - [7,016] ----D C:\Program Files (x86)\Pando Networks
O43 - CFD: 27/01/2014 - 16:42:49 - [9,893] ----D C:\Program Files (x86)\WiFi Protector
O43 - CFD: 05/05/2013 - 15:07:54 - [2,898] ----D C:\Program Files (x86)\Common Files\SpeedBit
O43 - CFD: 18/08/2013 - 16:00:17 - [229,470] ----D C:\ProgramData\Baidu Security =>Adware.BDSearch
O43 - CFD: 29/06/2013 - 19:57:11 - [0] ----D C:\ProgramData\Media Get LLC =>PUP.MediaGet
O43 - CFD: 26/03/2013 - 23:04:03 - [0] ----D C:\ProgramData\Plogue
O43 - CFD: 27/01/2014 - 13:53:08 - [0] ----D C:\ProgramData\ProductData
O43 - CFD: 26/01/2014 - 12:01:24 - [5,016] ----D C:\ProgramData\Speedbit
O43 - CFD: 19/01/2014 - 21:50:53 - [27,645] -SH-D C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
O43 - CFD: 24/08/2013 - 13:59:59 - [25,974] ----D C:\Users\admin\AppData\Roaming\Baidu Security =>Adware.BDSearch
O43 - CFD: 10/01/2014 - 22:05:34 - [52,074] ----D C:\Users\admin\AppData\Roaming\Device Doctor
O43 - CFD: 19/01/2014 - 21:45:03 - [31,519] ----D C:\Users\admin\AppData\Roaming\OpenCandy =>Adware.OpenCandy
O43 - CFD: 26/03/2013 - 23:04:03 - [0,044] ----D C:\Users\admin\AppData\Roaming\Plogue
O43 - CFD: 11/01/2014 - 14:28:02 - [0,004] ----D C:\Users\admin\AppData\Roaming\ProductData
O43 - CFD: 03/10/2013 - 22:45:13 - [0] ----D C:\Users\admin\AppData\Roaming\Retrovirus
O43 - CFD: 29/06/2013 - 19:57:15 - [0] ----D C:\Users\admin\AppData\Local\MediaGet2 =>PUP.MediaGet
O43 - CFD: 26/01/2014 - 03:54:21 - [0,280] ----D C:\Users\admin\AppData\Local\SwvUpdater =>PUP.Software.Updater
O43 - CFD: 26/01/2014 - 01:46:14 - [5,936] ----D C:\Users\admin\AppData\Local\William_McCormick
O43 - CFD: 15/01/2014 - 12:10:11 - [0,003] ----D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Mahjong Games
O43 - CFD: 27/07/2013 - 01:25:37 - [0,003] ----D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hao123
~ Program Folder: 196 Legitimates Filtered in 00mn 08s



---\\ Últimos ficheiros alterados ou criados no Windows e Sistema32 (044)
O44 - LFC:[MD5.1234B48B231364609B901CE4A72B816A] - 19/01/2014 - 20:39:30 ---A- . (...) -- C:\ADSA811.tmp [2721]
O44 - LFC:[MD5.7D2448E9F834738D2E3B9D99851762A6] - 19/01/2014 - 20:39:30 ---A- . (...) -- C:\ADSA822.tmp [2592]
O44 - LFC:[MD5.9E52264BA4A6C857006DBE05BD741911] - 25/01/2014 - 12:52:00 ---A- . (...) -- C:\Windows\System32\prfc0416.dat [147848]
O44 - LFC:[MD5.EF20BE70A07551CABF77D810929605FC] - 25/01/2014 - 12:52:00 ---A- . (...) -- C:\Windows\System32\prfh0416.dat [706008]
O44 - LFC:[MD5.02940D6C7722E91342A32CFF5C60F4E4] - 25/01/2014 - 17:29:03 ---A- . (...) -- C:\Windows\zoek-delete.exe [24064]
O44 - LFC:[MD5.7750D888A8D868D08883AFBD32D92708] - 25/01/2014 - 17:37:42 ---A- . (...) -- C:\zoek-results.log [22229]
~ Files: 26 Legitimates Filtered in 00mn 06s



---\\ Operações e funções ao arranque do Windows Explorer (046)
O46 - SEH:ShellExecuteHooks - Groove GFS Stub Execution Hook [64Bits] - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - Chave orfã
~ ShellExecuteHooks: Scanned in 00mn 00s



---\\ Enumeração das chaves do registo PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 19 Legitimates Filtered in 00mn 00s



---\\ Enumeração das chaves do registo PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoLowDiskSpaceChecks"=1
~ MWPE Keys: 5 Legitimates Filtered in 00mn 00s



---\\ Lista dos drivers do sistema (SDL) (O58)
O58 - SDL:[MD5.C04F7B373881009D7994D9BF55D24AB4] - 10/01/2014 - 21:57:55 ---A- . (...) -- C:\Windows\System32\Drivers\aswRvrt.sys [65776]
O58 - SDL:[MD5.90399625F341AB76BA4B85A5E860EB1F] - 10/01/2014 - 21:57:55 ---A- . (...) -- C:\Windows\System32\Drivers\aswVmm.sys [207904]
O58 - SDL:[MD5.3741B76F9B10CAA08415ECC0DCCFCC5C] - 23/12/2013 - 04:55:12 ---A- . (.Baidu, Inc. - Baidu Antivirus Minifilter Driver.) -- C:\Windows\System32\Drivers\Bfilter.sys [52032] =>Adware.BDSearch
O58 - SDL:[MD5.7CD8A8C19B39863BAFEA6C044DE2883D] - 17/12/2013 - 06:59:31 ---A- . (.Baidu, Inc. - Baidu FS Monitor Driver.) -- C:\Windows\System32\Drivers\Bfmon.sys [34624] =>Adware.BDSearch
O58 - SDL:[MD5.9C8993161130FF238C70410CA3FE39E3] - 18/12/2013 - 06:11:04 ---A- . (.Baidu, Inc. - Baidu Antivirus Selfprotect Driver.) -- C:\Windows\System32\Drivers\Bprotect.sys [128448] =>Adware.BDSearch
O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 13/07/2009 - 22:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496]
O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 17:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232]
O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 13/07/2009 - 22:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656]
~ Drivers: 19 Legitimates Filtered in 00mn 20s



---\\ Lista das ferramentas de remoção de vírus (LAT) (063)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Lista dos serviços Legacy du registo (064)
O64 - Services: CurCS - 23/12/2013 - C:\Windows\system32\drivers\Bfilter.sys (Bfilter) .(.Baidu, Inc. - Baidu Antivirus Minifilter Driver.) - LEGACY_BFILTER =>Adware.BDSearch
O64 - Services: CurCS - 17/12/2013 - C:\Windows\system32\drivers\Bfmon.sys (Bfmon) .(.Baidu, Inc. - Baidu FS Monitor Driver.) - LEGACY_BFMON =>Adware.BDSearch
O64 - Services: CurCS - 18/12/2013 - C:\Windows\system32\drivers\Bprotect.sys (Bprotect) .(.Baidu, Inc. - Baidu Antivirus Selfprotect Driver.) - LEGACY_BPROTECT =>Adware.BDSearch
~ Legacy: 94 Legitimates Filtered in 00mn 01s



---\\ Associações Shell Spawning (O67)
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 11 Legitimates Filtered in 00mn 00s



---\\ Menu de inicialização Internet (068)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
O69 - SBI: SearchScopes [HKCU] {7F4EFF06-7032-458e-AE16-1C1D8255C28A} [DefaultScope] - (Speedbit) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
~ Keys: Scanned in 00mn 00s



---\\ Pesquisa adicional à raiz do sistema (radicular) (SPRF) (O84)
[MD5.21E9A9E7295795CF37E03106FD39A3BB] [SPRF][26/01/2014] (.Somoto Ltd. - AppsHat Mobile Apps.) -- C:\Users\admin\AppData\Local\Temp\appshat_generic.exe [285608] =>Adware.MegaSearch
[MD5.B31EBD87CF7F09DEA4126233F713F93C] [SPRF][26/01/2014] (.Baidu, Inc. - PC Faster Setup.) -- C:\Users\admin\AppData\Local\Temp\Baidu_Secure_SystemUp_4.0.1.53841.exe [16929536] =>Adware.BDSearch
[MD5.120DD40CACEA40E432C5FF09C76F0B4A] [SPRF][25/01/2014] (...) -- C:\Users\admin\AppData\Local\Temp\bassmod.dll [36892]
[MD5.ED71368CD835020E7AA4FEB477BC7F4C] [SPRF][02/05/2013] (...) -- C:\Users\admin\AppData\Local\Temp\cabex.dll [105064]
[MD5.FD476D52F9D248B355BF451145F25299] [SPRF][26/01/2014] (.Baidu.com - hao123 Desktop Shortcut.) -- C:\Users\admin\AppData\Local\Temp\hao123inst-brazil-somoto.exe [332320] =>Adware.BDSearch
[MD5.5F6827A7A829C71999284F1D81FF364B] [SPRF][26/01/2014] (...) -- C:\Users\admin\AppData\Local\Temp\LollipopInstaller_14633.exe [13140] =>Adware.Lollipop
[MD5.4427E2DA90D5D31779E16079E68C2EB4] [SPRF][26/01/2014] (.Somoto Ltd. - Online Weather.) -- C:\Users\admin\AppData\Local\Temp\OnlineWeatherSetup.exe [302944] =>Adware.MegaSearch
[MD5.9047C955DBB78A08942BE8B1A3D232AD] [SPRF][26/01/2014] (.Baidu Inc. - Baidu PC Faster MiniSetup.) -- C:\Users\admin\AppData\Local\Temp\PC_Faster_Setup_Mini_B25_S.exe [1440168] =>Adware.BDSearch
[MD5.5A8FB4C5F12D8BE07E099FA52131466B] [SPRF][14/05/2012] (...) -- C:\Users\admin\AppData\Local\Temp\RunWizards.exe [129720]
[MD5.333DBEE2C6F16A84A3ED61BBCF6F138A] [SPRF][26/01/2014] (.Skytech Co., Ltd. - Skytech.) -- C:\Users\admin\AppData\Local\Temp\smt_awesomehp.exe [882672] =>PUP.Awesomehp
[MD5.9B589E18187EC730944C825DEB9D554A] [SPRF][26/01/2014] (...) -- C:\Users\admin\AppData\Local\Temp\SurftasticSetup.exe [233048]
[MD5.EF7D1863F4980AB0C8BDA142FEE67F92] [SPRF][26/01/2014] (.Somoto Ltd. - FilesFrog Update Checker.) -- C:\Users\admin\AppData\Local\Temp\UpdateCheckerSetup.exe [200072] =>Adware.MegaSearch
[MD5.246FE58EFFD357B2078842708155E46C] [SPRF][15/01/2014] (...) -- C:\Users\admin\Desktop\adwcleaner.exe [1236282]
~ Files: 14 Legitimates Filtered in 00mn 01s



---\\ Lista das exceções do FireWall (FirewallRules) (O87)
O87 - FAEL: "{59E13398-DF98-4F0E-B9AB-6622ABDA03EA}" |In - Private - P6 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe (.not file.)
O87 - FAEL: "{0F2AF104-2ADC-492F-A395-AC14BC21B3C7}" |In - Private - P17 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe (.not file.)
O87 - FAEL: "{283A832A-BA0C-453B-B506-0D035EE61EF4}" |In - Public - P6 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe (.not file.)
O87 - FAEL: "{03D41FC4-DE82-49C5-BBD6-029A3F8FC264}" |In - Public - P17 - TRUE | .(...) -- C:\Windows\System32\dmwu.exe (.not file.)
O87 - FAEL: "{DE7C9506-6154-456B-8F3F-0C3607C38C35}" |In - Private - P6 - TRUE | .(...) -- C:\Users\admin\AppData\Local\MediaGet2\mediaget.exe (.not file.) =>PUP.MediaGet
O87 - FAEL: "{496DFDF1-85F5-4196-ADC0-FC48F433BBCB}" |In - Private - P17 - TRUE | .(...) -- C:\Users\admin\AppData\Local\MediaGet2\mediaget.exe (.not file.) =>PUP.MediaGet
O87 - FAEL: "{20D00C21-EB57-4ED8-B482-1C520A323434}" |In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\WinZip Driver Updater\winzipdu.exe (.not file.)
O87 - FAEL: "TCP Query User{D98C8AE6-E307-4856-9395-A1C4599DCD29}C:\program files (x86)\relevantknowledge\rlvknlg.exe" |In - Public - P6 - TRUE | .(...) -- C:\program files (x86)\relevantknowledge\rlvknlg.exe (.not file.) =>Adware.RelevantKnowledge
O87 - FAEL: "UDP Query User{FCFDC3C0-A911-4EB4-90CE-AAB93A22EB6A}C:\program files (x86)\relevantknowledge\rlvknlg.exe" |In - Public - P17 - TRUE | .(...) -- C:\program files (x86)\relevantknowledge\rlvknlg.exe (.not file.) =>Adware.RelevantKnowledge
O87 - FAEL: "{B501D9A0-9E4E-4AE1-8348-EC4B94F6D2FB}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe (.not file.) =>Adware.RelevantKnowledge
O87 - FAEL: "{05CEFFEC-06D4-49FC-B44E-B34393E0E0A1}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe (.not file.) =>Adware.RelevantKnowledge
O87 - FAEL: "TCP Query User{FD3F9546-9C13-4C1C-A2AA-1C7474D5F51B}C:\program files (x86)\orbitdownloader\orbitnet.exe" |In - Private - P6 - TRUE | .(...) -- C:\program files (x86)\orbitdownloader\orbitnet.exe (.not file.)
O87 - FAEL: "UDP Query User{86F62194-063A-416D-8734-2B65FEEA3329}C:\program files (x86)\orbitdownloader\orbitnet.exe" |In - Private - P17 - TRUE | .(...) -- C:\program files (x86)\orbitdownloader\orbitnet.exe (.not file.)
O87 - FAEL: "TCP Query User{13AF0558-1D76-44F2-9134-CAA11235774D}C:\program files (x86)\dap\dap.exe" | In - Private - P6 - TRUE | .(.Speedbit Ltd. - Download Accelerator Plus (DAP).) -- C:\program files (x86)\dap\dap.exe
O87 - FAEL: "UDP Query User{45A8FDC1-7098-4E2B-9D2E-6314E5EAB614}C:\program files (x86)\dap\dap.exe" | In - Private - P17 - TRUE | .(.Speedbit Ltd. - Download Accelerator Plus (DAP).) -- C:\program files (x86)\dap\dap.exe
~ Firewall: 657 Legitimates Filtered in 00mn 06s



---\\ Estado general dos serviços não Microsoft (EGS) (SR=Executados, SS=Parados)
SS - | Demand 10/05/2013 65640 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - | Demand 19/01/2014 257928 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Demand 25/06/2013 632352 | (Disc Soft Bus Service) . (.Disc Soft Ltd.) - C:\Program Files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe
SS - | Auto 21/02/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 21/02/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Auto 11/01/2014 2151744 | (LiveUpdateSvc) . (.IObit.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
SS - | Demand 06/09/2013 288776 | (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe
SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SS - | Demand 11/12/2013 569768 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe

SR - | Auto 18/08/2009 203264 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 10/01/2014 50344 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - | Auto 10/01/2014 113704 | (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe
SR - | Auto 11/03/2010 1636872 | (AxiomAudioDevMon) . (.M-Audio.) - C:\Program Files (x86)\M-Audio\Axiom\AudioDevMon.exe
SR - | Auto 06/07/2011 2304912 | (CodeMeter.exe) . (.WIBU-SYSTEMS AG.) - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
SR - | Auto 18/10/2013 1638728 | (wifiProtService) . (...) - C:\Program Files (x86)\WiFi Protector\wifiProtService.exe
SR - | Auto 13/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Demand 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
SR - | Auto 13/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

~ Services: Scanned in 00mn 16s



---\\ Scâner Aditional (088)
Database Version : 13030 - (25/01/2014)
Clés trouvées (Keys found) : 80
Valeurs trouvées (Values found) : 6
Dossiers trouvés (Folders found) : 8
Fichiers trouvés (Files found) : 19

[HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\hao123desk-international] =>Adware.BDSearch^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\SaveSense] =>PUP.SaveSense^
[HKLM\Software\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}] =>PUP.Software.Updater
[HKLM\Software\Wow6432Node\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}] =>PUP.Software.Updater
[HKLM\Software\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}] =>PUP.Software.Updater
[HKLM\Software\Classes\Updater.AmiUpd] =>PUP.Software.Updater
[HKLM\Software\Classes\Updater.AmiUpd.1] =>PUP.Software.Updater
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9] =>Adware.MyWebSearch
[HKCU\Software\Somoto] =>Adware.MegaSearch
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}] =>PUP.Software.Updater
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyUpdate] =>PUP.DealPly
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>PUP.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>PUP.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Dealply] =>PUP.DealPly
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus] =>Adware.BDSearch
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094] =>PUP.SweetIM^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536] =>PUP.SweetIM^
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:Free Mahjong Games =>Adware.SocialSkinz^
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\kyshtx6x.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36} =>PUP.SaveSense^
C:\Program Files (x86)\Baidu Security =>Adware.BDSearch^
C:\ProgramData\Baidu Security =>Adware.BDSearch^
C:\ProgramData\Media Get LLC =>PUP.MediaGet^
C:\Users\admin\AppData\Roaming\Baidu Security =>Adware.BDSearch^
C:\Users\admin\AppData\Roaming\OpenCandy =>Adware.OpenCandy^
C:\Users\admin\AppData\Local\MediaGet2 =>PUP.MediaGet^
C:\Users\admin\AppData\Local\SwvUpdater =>PUP.Software.Updater^
C:\Users\admin\AppData\Local\FilesFrog Update Checker\update_checker.exe =>Adware.MegaSearch^
C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent^
C:\Windows\Tasks\AmiUpdXp.job =>PUP.Software.Updater^
C:\Users\admin\AppData\Local\SwvUpdater\Updater.exe =>PUP.Software.Updater^
[HKCU\Software\Baidu Security] =>Adware.BDSearch^
[HKCU\Software\Media Get LLC] =>PUP.MediaGet^
[HKLM\Software\Wow6432Node\Baidu Security] =>Adware.BDSearch^
[HKLM\Software\Wow6432Node\Baidu_Drp_pos] =>Adware.BDSearch^
C:\Users\admin\AppData\Local\Temp\appshat_generic.exe =>Adware.MegaSearch^
C:\Users\admin\AppData\Local\Temp\Baidu_Secure_SystemUp_4.0.1.53841.exe =>Adware.BDSearch^
C:\Users\admin\AppData\Local\Temp\hao123inst-brazil-somoto.exe =>Adware.BDSearch^
C:\Users\admin\AppData\Local\Temp\LollipopInstaller_14633.exe =>Adware.Lollipop^
C:\Users\admin\AppData\Local\Temp\OnlineWeatherSetup.exe =>Adware.MegaSearch^
C:\Users\admin\AppData\Local\Temp\PC_Faster_Setup_Mini_B25_S.exe =>Adware.BDSearch^
C:\Users\admin\AppData\Local\Temp\smt_awesomehp.exe =>PUP.Awesomehp^
C:\Users\admin\AppData\Local\Temp\UpdateCheckerSetup.exe =>Adware.MegaSearch^
~ Additionnel Scan: 223722 Items scanned in 00mn 59s



---\\ Sumário das deteções encontradas na sua estação
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Adware.MegaSearch
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.SaveSense
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Hijacker.NationZoom
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Adware.BDSearch
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Hijacker.Beamrise
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.Mobogenie
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Adware.SocialSkinz
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.Software.Updater
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Adware.InstallCore
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.MediaGet
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Adware.OpenCandy
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Adware.Lollipop
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.Awesomehp
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Adware.RelevantKnowledge
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Toolbar.Ask
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Adware.MyWebSearch
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.DealPly
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.Tarma
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.SweetIM
~ MSI: 19 link(s) detected in 00mn 59s



~ 1614 Legitimates filtered by white list
End of the scan (643 lines in 02mn 42s)(0)
Pedro Silva
Pedro Silva
Iniciante
Iniciante

Mensagens : 8
Reputação : 0
Data de inscrição : 11/01/2014

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Power Max Seg 27 Jan 2014, 18:41

Uso de CPU chega a 100% 772309 Copie todo este script que te passei.
 
Vá no menu: Iniciar > Todos os programas > ZHP > ZHPFix > Na tela que abrir cole o que você copiou (Ctrl + V) > Clique no botão GO > Clique em Oui > Caso queira que os arquivos da lixeira sejam excluídos clique em Oui novamente > Um relatório aparecerá no bloco de notas. Copie este relatório e poste em sua próxima resposta.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Pedro Silva Seg 27 Jan 2014, 19:05

Rapport de ZHPFix 2014.1.17.2 par Nicolas Coolman, Update du 17/01/2014
Fichier d'export Registre :
Run by admin at 27/01/2014 19:05:01
High Elevated Privileges : OK
Windows 7 Enterprise Edition, 64-bit Service Pack 1 (Build 7601)

Reciclagem vazia (00mn 04s)

========== Softwares ==========
AUSENTE Uninstall Process: c:\program files (x86)\savesense\uninst.exe

========== Processo memória ==========
ELIMINÉ: Memory Process: C:\Users\admin\AppData\Local\FilesFrog Update Checker\update_checker.exe
ELIMINÉ: Memory Process: C:\Users\admin\AppData\Local\SwvUpdater\Updater.exe
ELIMINÉ: Memory Process: C:\Users\admin\AppData\Local\Temp\appshat_generic.exe
ELIMINÉ: Memory Process: C:\Users\admin\AppData\Local\Temp\Baidu_Secure_SystemUp_4.0.1.53841.exe
ELIMINÉ: Memory Process: C:\Users\admin\AppData\Local\Temp\hao123inst-brazil-somoto.exe
ELIMINÉ: Memory Process: C:\Users\admin\AppData\Local\Temp\LollipopInstaller_14633.exe
ELIMINÉ: Memory Process: C:\Users\admin\AppData\Local\Temp\OnlineWeatherSetup.exe
ELIMINÉ: Memory Process: C:\Users\admin\AppData\Local\Temp\PC_Faster_Setup_Mini_B25_S.exe
ELIMINÉ: Memory Process: C:\Users\admin\AppData\Local\Temp\smt_awesomehp.exe
ELIMINÉ: Memory Process: C:\Users\admin\AppData\Local\Temp\UpdateCheckerSetup.exe

========== Estado dos serviços ==========
BFILTER Parado
BFMON Parado
BPROTECT Parado

========== Chaves do Registo ==========
ELIMINÉ Logiciel Key: [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SaveSense]
ELIMINÉ Driver Key: Bfilter
ELIMINÉ Driver Key: Bfmon
ELIMINÉ Driver Key: Bprotect
ELIMINÉ: HKCU\Software\Baidu Security
ELIMINÉ: HKCU\Software\InstallCore
ELIMINÉ: HKCU\Software\Media Get LLC
ELIMINÉ: HKCU\Software\Somoto
ELIMINÉ: HKLM\Software\Wow6432Node\Baidu Security
ELIMINÉ: HKLM\Software\Wow6432Node\Baidu_Drp_pos
ELIMINÉ: [HKLM\SOFTWARE\Classes\CLSID\{B5A7F190-DDA6-4420-B3BA-52453494E6CD}]
ELIMINÉ: SearchScopes :{7F4EFF06-7032-458e-AE16-1C1D8255C28A}
ELIMINÉ: Service: McComponentHostService
ELIMINÉ: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\hao123desk-international
ELIMINÉ:* HKLM\Software\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
ELIMINÉ: HKLM\Software\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
ELIMINÉ: HKLM\Software\Classes\Updater.AmiUpd
ELIMINÉ: HKLM\Software\Classes\Updater.AmiUpd.1
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
ELIMINÉ: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
ELIMINÉ:* HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyUpdate
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E
ELIMINÉ:* HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Dealply
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536

========== Valores do Registo ==========
ProxyFix : Configuração proxy removida com sucesso
ELIMINÉ ProxyServer Value
ELIMINÉ ProxyEnable Value
ELIMINÉ EnableHttp1_1 Value
ELIMINÉ ProxyHttp1.1 Value
ELIMINÉ ProxyOverride Value
ELIMINÉ RunValue: Free Mahjong Games
ELIMINÉ RunValue: Device Doctor
ELIMINÉ RunValue: Akamai NetSession Interface
ELIMINÉ ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD}
ELIMINÉ: {59E13398-DF98-4F0E-B9AB-6622ABDA03EA}
ELIMINÉ: {0F2AF104-2ADC-492F-A395-AC14BC21B3C7}
ELIMINÉ: {283A832A-BA0C-453B-B506-0D035EE61EF4}
ELIMINÉ: {03D41FC4-DE82-49C5-BBD6-029A3F8FC264}
ELIMINÉ: {DE7C9506-6154-456B-8F3F-0C3607C38C35}
ELIMINÉ: {496DFDF1-85F5-4196-ADC0-FC48F433BBCB}
ELIMINÉ: {20D00C21-EB57-4ED8-B482-1C520A323434}
ELIMINÉ: TCP Query User{D98C8AE6-E307-4856-9395-A1C4599DCD29}C:\program files (x86)\relevantknowledge\rlvknlg.exe
ELIMINÉ: UDP Query User{FCFDC3C0-A911-4EB4-90CE-AAB93A22EB6A}C:\program files (x86)\relevantknowledge\rlvknlg.exe
ELIMINÉ: {B501D9A0-9E4E-4AE1-8348-EC4B94F6D2FB}
ELIMINÉ: {05CEFFEC-06D4-49FC-B44E-B34393E0E0A1}
ELIMINÉ: TCP Query User{FD3F9546-9C13-4C1C-A2AA-1C7474D5F51B}C:\program files (x86)\orbitdownloader\orbitnet.exe
ELIMINÉ: UDP Query User{86F62194-063A-416D-8734-2B65FEEA3329}C:\program files (x86)\orbitdownloader\orbitnet.exe
ELIMINÉ: FirewallRaz (Public) : TCP Query User{0B29F17E-73DF-49A1-BEF2-DDF9E6EC3808}C:\program files (x86)\steam\steamapps\petersurvival16\team fortress 2\hl2.exe
ELIMINÉ: FirewallRaz (Public) : UDP Query User{80DAC5F8-C064-4B9E-A493-BEAB4A838825}C:\program files (x86)\steam\steamapps\petersurvival16\team fortress 2\hl2.exe
ELIMINÉ: FirewallRaz (Private) : {8D040CA7-8026-4E8B-8D64-79B64FCA77E5}
ELIMINÉ: FirewallRaz (Private) : {81E725A1-B03B-453C-979C-E917C442BF43}
ELIMINÉ: FirewallRaz (Private) : {A76A30E3-057B-4A7E-B700-645500C1F285}
ELIMINÉ: FirewallRaz (Private) : {6FE99C57-9ECA-4472-B445-D3A38A69D8D3}
ELIMINÉ: FirewallRaz (Private) : {7DC22B37-4258-4337-AA1D-1DB9A10C844E}
ELIMINÉ: FirewallRaz (Private) : {DCFF0679-85C0-4127-A36F-30D015BC7B36}
ELIMINÉ: FirewallRaz (Private) : {C5E0B388-922F-4D82-9511-BA01F4D1C342}
ELIMINÉ: FirewallRaz (Private) : {3C7EC0E0-97E2-4721-8E9D-8BC1AF608C25}
ELIMINÉ: FirewallRaz (Private) : {A71B2704-5A8F-4242-96BF-2B409C31B885}
ELIMINÉ: FirewallRaz (Private) : {06E5A9ED-3EC6-40DA-A002-B70D2ECA8EAD}
ELIMINÉ: FirewallRaz (Public) : {A113BA46-85C7-45BA-9544-66B6BA1C9FC3}
ELIMINÉ: FirewallRaz (Public) : {2E99F12D-BB75-4B5C-B206-44E84E8FFC7F}
ELIMINÉ: FirewallRaz (Private) : {4C79D22F-7BA4-4EB2-94E7-55ED22969E80}
ELIMINÉ: FirewallRaz (Private) : {DD010B73-11F8-4CE2-A632-6E9397089A1A}
ELIMINÉ: FirewallRaz (Private) : {08437BE4-C074-43A3-8C6D-F4F29B187886}
ELIMINÉ: FirewallRaz (Private) : {209C5BC8-9469-4730-8DC4-FA5F24078DD7}
ELIMINÉ: FirewallRaz (Private) : {6E55C577-D2C3-49C2-BA9C-85839BE01952}
ELIMINÉ: FirewallRaz (Private) : {0F3C77E2-53F8-4817-8C28-3136FE487ED2}
ELIMINÉ: FirewallRaz (Private) : {193965B4-1AB1-4EB9-A851-EB1D40CB54EA}
ELIMINÉ: FirewallRaz (Private) : {7F8B39D3-1E5B-4384-BBCB-D1412C7F9F02}
ELIMINÉ: FirewallRaz (Private) : {4CC86685-1135-4EAD-A954-6728F1EEDD99}
ELIMINÉ: FirewallRaz (Private) : {2E58205F-E671-467B-9D9B-E10E6EC13F4A}
ELIMINÉ: FirewallRaz (Public) : {A01E018B-DC0C-46CB-AA8B-F120090B9CD1}
ELIMINÉ: FirewallRaz (Private) : {ED82BB75-A878-4065-AB9C-3B6055105153}
ELIMINÉ: FirewallRaz (Public) : {B0903541-E1E3-4A5B-B1BB-DC334F88138B}
ELIMINÉ: FirewallRaz (Private) : {511B87AF-2FCE-4249-B74A-69E712D15849}
ELIMINÉ: FirewallRaz (Private) : {2E20875F-FE27-49AB-AF9E-4558306842B9}
ELIMINÉ: FirewallRaz (Private) : {8E221D41-C2B2-4B5B-8D1F-669BA438A6EE}
ELIMINÉ: FirewallRaz (Private) : {FD6F5097-5BBF-4E6F-B2E5-23B2B8237592}
ELIMINÉ: FirewallRaz (Private) : TCP Query User{D868B340-DBD2-473A-8D20-72F4D7C56289}C:\users\admin\appdata\local\temp\rar$exa0.342\ggpo.exe
ELIMINÉ: FirewallRaz (Private) : UDP Query User{980EED90-A437-4957-B79A-DEAF8E606149}C:\users\admin\appdata\local\temp\rar$exa0.342\ggpo.exe
ELIMINÉ: FirewallRaz (Private) : TCP Query User{7887BBAC-9742-41DB-9693-FC94D4121828}C:\users\admin\appdata\local\temp\rar$exa0.560\ggpo.exe
ELIMINÉ: FirewallRaz (Private) : UDP Query User{B4885006-0E2A-4354-BB64-162E85F1E8EB}C:\users\admin\appdata\local\temp\rar$exa0.560\ggpo.exe
ELIMINÉ: FirewallRaz (Private) : TCP Query User{4DC1B504-5F81-43AE-8743-933A6009F09E}C:\users\admin\appdata\local\temp\rar$exa0.437\ggpo.exe
ELIMINÉ: FirewallRaz (Private) : UDP Query User{0B4F0926-3CB7-451C-B3AD-D1B0B8C888E2}C:\users\admin\appdata\local\temp\rar$exa0.437\ggpo.exe
ELIMINÉ: FirewallRaz (Private) : {6A44972B-9DB6-4348-8521-B55CE9288B85}
ELIMINÉ: FirewallRaz (Private) : {CDFF9B7D-6B59-49E6-88BB-09B0A74AEA40}
ELIMINÉ: FirewallRaz (Private) : {B8E7624C-97F4-4DA8-8224-096C4E44A1E1}
ELIMINÉ: FirewallRaz (Private) : {519261A2-E4A1-41CF-B741-3459616F09EC}
ELIMINÉ: FirewallRaz (Private) : {8E7ED5CD-999A-4B58-88D3-E37CF1331C2A}
ELIMINÉ: FirewallRaz (Private) : {15EC77DB-38D9-4887-BA05-D6BA1BC595FE}
ELIMINÉ: FirewallRaz (Private) : {74599E31-1C9C-4815-B8A5-20560F6BC321}
ELIMINÉ: FirewallRaz (Private) : {9FA69C7A-9F0F-4B8A-BADE-1BD3A16A8A9D}
ELIMINÉ: FirewallRaz (Private) : {885D488D-359D-4A3F-AE46-16C5438CD171}
ELIMINÉ: FirewallRaz (Private) : {47833978-1703-4ED3-BE6C-BA8968D72FDF}
ELIMINÉ: FirewallRaz (Private) : {66B01292-46E7-457A-9AF1-21A788723D1F}
ELIMINÉ: FirewallRaz (Private) : {517ACD24-D59E-40B3-88A8-CBF780D23F25}
ELIMINÉ: FirewallRaz (Private) : {8D511257-1794-4B30-8706-5930E550814C}
ELIMINÉ: FirewallRaz (Private) : {427DA183-D9BF-43FA-9650-CBC76402D92A}
ELIMINÉ: FirewallRaz (Private) : {74BBE362-E6EF-4473-BD5A-7C409F99A2C9}
ELIMINÉ: FirewallRaz (Private) : {BBF43845-3851-42AB-A9ED-7DFF81C3DF1A}
ELIMINÉ: FirewallRaz (Private) : {C427EAC6-AC11-43B1-AE2B-22DBF3F99E05}
ELIMINÉ: FirewallRaz (Private) : {9A1367ED-8E83-4C1D-BB5E-9B9E4170B96C}
ELIMINÉ: FirewallRaz (Private) : {E81774B8-1446-4BF6-ADE3-5BBE1448F02E}
ELIMINÉ: FirewallRaz (Private) : {AEFD24CB-E274-42E2-9CD5-1336BD74CDB3}
ELIMINÉ: FirewallRaz (Private) : {E7AB71C0-F873-432F-9AB8-FC98D1D1A6B9}
ELIMINÉ: FirewallRaz (Private) : {FA2A2344-1693-46AB-B88E-DD2A3E1DE43D}
ELIMINÉ: FirewallRaz (Private) : {81D1C95F-BB25-4391-8713-A5A298D38427}
ELIMINÉ: FirewallRaz (Private) : {F957E781-6EE4-4507-A781-EF8600845ACE}
ELIMINÉ: FirewallRaz (Private) : {A145965C-9C8D-4139-AA8F-D84F581D9035}
ELIMINÉ: FirewallRaz (Private) : {96BD76F1-2519-437E-A100-2458769491A0}
ELIMINÉ: FirewallRaz (Private) : {9037F8EA-2F20-4BBA-A50D-AF5C2B55E35E}
ELIMINÉ: FirewallRaz (Private) : {0A9BD5E8-973F-429F-9AF3-AE6B60E68D99}
ELIMINÉ: FirewallRaz (Private) : {548CA9C6-956E-4041-941F-2A7D65B58A4F}
ELIMINÉ: FirewallRaz (Public) : {3647DE2D-B762-48A4-8C7C-71052A794ED9}
ELIMINÉ: FirewallRaz (Private) : {4377DC38-DAC9-4B01-9CD3-5F2FAF9EE59A}
ELIMINÉ: FirewallRaz (Private) : {C1603EDD-2AA7-4DED-97DC-006A3C647B9B}
ELIMINÉ: FirewallRaz (Private) : {AE9F23D3-A330-49BF-BC0B-491D4FA678E5}
ELIMINÉ: FirewallRaz (Private) : {2B1CD581-290D-45C8-AF8E-BDB41040A896}
ELIMINÉ: FirewallRaz (Private) : {8899C23F-40F1-423D-AD3D-5CE8EC6B9501}
ELIMINÉ: FirewallRaz (Private) : {0E94C599-E02E-46BB-B05D-8A208647C693}
ELIMINÉ: FirewallRaz (Private) : {F0CCEDDB-78CB-4C43-A062-1B3E95C4C4EB}
ELIMINÉ: FirewallRaz (Private) : {B0E76DFA-A2F5-4D76-8471-38A19B61747D}
ELIMINÉ: FirewallRaz (Private) : {41F6D247-7EC0-4222-85FC-C96E4DA332E3}
ELIMINÉ: FirewallRaz (Private) : {2FD09757-4097-49E4-8C02-9AAF6EDDD236}
ELIMINÉ: FirewallRaz (Private) : {BA3DF6CB-D6C3-426E-983E-D9C6C47B074F}
ELIMINÉ: FirewallRaz (Private) : {272BCEF0-313C-496A-A378-190CA44EB145}
ELIMINÉ: FirewallRaz (Private) : {AF17200D-A8D7-45EA-9B41-A66F8CC8E357}
ELIMINÉ: FirewallRaz (Private) : {DF4975CC-F564-4863-9286-B6DC31FFD560}
ELIMINÉ: FirewallRaz (Private) : {785528D2-E2E9-4462-BE57-D44E494A6345}
ELIMINÉ: FirewallRaz (Private) : {C597686F-6D0B-4962-A938-F66BAD1440C8}
ELIMINÉ: FirewallRaz (Private) : {0D6C3AA8-55C5-4E4A-AC4C-1633D6946B35}
ELIMINÉ: FirewallRaz (Private) : {0A8A83F5-58E3-4F5D-83FD-7A35680536FC}
ELIMINÉ: FirewallRaz (Private) : {3507C5F5-F1F8-44B9-A727-995303744126}
ELIMINÉ: FirewallRaz (Private) : {ECF1609B-AC2E-45A6-BD55-EE0D2F58414C}
ELIMINÉ: FirewallRaz (Private) : {3EA5185D-8F75-4E67-B7F4-7EB820B40083}
ELIMINÉ: FirewallRaz (Private) : {B42467E8-ADD3-4AD6-848A-1CC31C009979}
ELIMINÉ: FirewallRaz (Private) : {CEBFD417-7542-41A8-9F9D-89B45635C59C}
ELIMINÉ: FirewallRaz (Private) : {FC47C028-9367-4F3C-89CE-558CF23E05E7}
ELIMINÉ: FirewallRaz (Private) : {91A8B9D4-4B8E-4B5C-BB72-91BFB7255EF5}
ELIMINÉ: FirewallRaz (Private) : {73307F54-57FB-46CF-9296-68AEBC9D7CD1}
ELIMINÉ: FirewallRaz (Private) : {F9A7E769-C8C0-4C9B-A525-A81DCED2D1BE}
ELIMINÉ: FirewallRaz (Private) : {F2FC04C2-238A-47B3-98CF-997F6F2040CD}
ELIMINÉ: FirewallRaz (Private) : {AEF96F95-44E9-4404-977D-ED9447D40E37}
ELIMINÉ: FirewallRaz (Private) : {15678E48-96FB-4C76-9C7E-70957789FA05}
ELIMINÉ: FirewallRaz (Private) : {6071BAA4-743F-4403-87E1-D890D9568F65}
ELIMINÉ: FirewallRaz (Private) : {F23B65FC-3F24-407A-BBAB-48D51F8BF135}
ELIMINÉ: FirewallRaz (Private) : {F1C33BF0-38AF-46AB-8736-9CFC7B8728EA}
ELIMINÉ: FirewallRaz (Private) : {6B2454BE-AB79-44DB-BABD-E9739F521232}
ELIMINÉ: FirewallRaz (Private) : {608EEEBC-199C-4DD8-9D86-E0CD85895A17}
ELIMINÉ: FirewallRaz (Private) : {0BAB9B35-C772-4660-BC94-3BCE53031A15}
ELIMINÉ: FirewallRaz (Private) : {2FE85542-0FCC-4058-BD1E-4FE02B2DD27B}
ELIMINÉ: FirewallRaz (Private) : {431F3B23-B766-4316-A97C-2AB483F9ECDC}
ELIMINÉ: FirewallRaz (Private) : {330620AC-00CB-46E1-B62A-104BF62F8D60}
ELIMINÉ: FirewallRaz (Private) : {3D47CA72-8A0F-4CBE-86B3-3C024B4F1744}
ELIMINÉ: FirewallRaz (Private) : {7F22C614-C8EC-41E5-BE55-C4BC1E067F97}
ELIMINÉ: FirewallRaz (Private) : {100B4F98-631C-4C04-8370-07323A35168C}
ELIMINÉ: FirewallRaz (Private) : {56E043F4-ADB5-4AB4-B405-28EAE8E1F5F9}
ELIMINÉ: FirewallRaz (Private) : {C0042B2C-7E12-43C3-AC7C-4346EAE13FF6}
ELIMINÉ: FirewallRaz (Private) : {ACBAEF62-28D7-49CF-96A7-A8669B138516}
ELIMINÉ: FirewallRaz (Private) : {CFB35C71-ECEC-4AD4-B834-F6615EE639A5}
ELIMINÉ: FirewallRaz (Private) : {41542431-3C47-42A9-A7E5-C45E14240B78}
ELIMINÉ: FirewallRaz (Private) : {510EEDD0-A1A2-456B-AF03-12FBD3FB4CE7}
ELIMINÉ: FirewallRaz (Private) : {F0330020-E9B0-40A9-8BEE-D46647F7B965}
ELIMINÉ: FirewallRaz (Private) : {54567FEB-6933-4060-A7AA-F3305D5DB37D}
ELIMINÉ: FirewallRaz (Private) : {908E289B-745B-4EB1-8E82-CBF269CEEBDF}
ELIMINÉ: FirewallRaz (Private) : {00CAA9AE-19FD-4D14-AACD-1DE89B4DAA9A}
ELIMINÉ: FirewallRaz (Private) : {B7936460-91AE-4C4C-97A0-D7EB4F1C9E7E}
ELIMINÉ: FirewallRaz (Private) : {3CFDD23D-0401-44AE-9983-BE6CD6BEF1B0}
ELIMINÉ: FirewallRaz (Private) : {F00463A9-F0DD-479D-B36B-7B469AB0417B}
ELIMINÉ: FirewallRaz (Private) : {BEFC768D-CEA3-4CFD-B48C-BC878F276100}
ELIMINÉ: FirewallRaz (Private) : {6871437D-0B55-46A3-B1CD-B77A1C562784}
ELIMINÉ: FirewallRaz (Private) : {A62312C6-5679-498D-A666-BA8A879B6A2A}
ELIMINÉ: FirewallRaz (Private) : {7521E650-1073-4260-ADCD-A7D9C9AF171E}
ELIMINÉ: FirewallRaz (Public) : {91FA6F03-814F-44F4-8D1A-2487509F47B4}
ELIMINÉ: FirewallRaz (Private) : {B9790DDD-2126-402F-920C-7012FAC1FE0B}
ELIMINÉ: FirewallRaz (Public) : {B0119CF5-A3C6-4879-A4D4-D5E8E1D29DC9}
ELIMINÉ: FirewallRaz (Public) : {11A07708-698A-4856-B76B-F55C91C3EDEA}
ELIMINÉ: FirewallRaz (Private) : {916F2602-7542-40C2-A349-DA95E471E846}
ELIMINÉ: FirewallRaz (Public) : {0625039D-1270-436B-B7C9-F665A4C1927D}
ELIMINÉ: FirewallRaz (Private) : {B50297D7-7332-4D3D-B466-A4A28526BBC6}
ELIMINÉ: FirewallRaz (Private) : {35B69FA0-FBFA-4D4E-9445-A200554CB62D}
ELIMINÉ: FirewallRaz (Private) : {83BF2671-2FCF-439C-A944-C170446CA387}
ELIMINÉ: FirewallRaz (Private) : {0E0F99CD-768B-44FE-BD20-88A5A766D4B8}
ELIMINÉ: FirewallRaz (Private) : {EAF45A9E-DDB3-4D23-9D44-7054EF69F2B5}
ELIMINÉ: FirewallRaz (Private) : {001C4642-952A-4D83-A5BF-E04C7032F897}
ELIMINÉ: FirewallRaz (Public) : {AF1AD09D-32B3-4745-BF45-85F561099D86}
ELIMINÉ: FirewallRaz (Private) : {09C58D0F-DE7F-4457-86D7-D7EBDD8C0AD8}
ELIMINÉ: FirewallRaz (Public) : {613E6A23-D951-47F2-97C1-E3F2FA819443}
ELIMINÉ: FirewallRaz (Private) : {55A8AB7E-DCDC-4D2D-93FE-427AA7FC0599}
ELIMINÉ: FirewallRaz (Private) : {122F2393-5043-4416-9F73-6FC1582C7382}
ELIMINÉ: FirewallRaz (Private) : {DEF68FC2-2FAC-43CD-A60B-64F2DD499944}
ELIMINÉ: FirewallRaz (Private) : {AE8DFB5D-EEDE-481F-B933-75913362937F}
ELIMINÉ: FirewallRaz (Public) : {9E9D56F7-AF59-4ABE-8E2D-B9D2315A053B}
ELIMINÉ: FirewallRaz (Private) : {1E67D814-3E97-439B-B311-4987064AA4A9}
ELIMINÉ: FirewallRaz (Private) : {7F604B3B-DA43-49F4-9493-84086262D43A}
ELIMINÉ: FirewallRaz (Private) : {DF437929-4317-47C1-9C23-1B2A0BC77695}
ELIMINÉ: FirewallRaz (Private) : {0E15CAF7-31DE-4040-B11F-C97E515B6354}
ELIMINÉ: FirewallRaz (Private) : {0B243CF4-0147-4B0D-BAD7-47E3CA788A62}
ELIMINÉ: FirewallRaz (Public) : {FCB917D9-9F43-48E4-A575-AD38104C3A9F}
ELIMINÉ: FirewallRaz (Public) : {3DDEB709-46C0-46E6-8C66-F86CDFF4D0D7}
ELIMINÉ: FirewallRaz (Public) : {7C16681F-E424-4651-8F7C-3AD91053F0D4}
ELIMINÉ: FirewallRaz (Private) : {5C720B87-1272-4160-89BF-E099D1F05E64}
ELIMINÉ: FirewallRaz (Public) : {2384F52D-8F24-438F-A2F6-80920BDDC737}
ELIMINÉ: FirewallRaz (Private) : {B119C980-1118-408E-BB8C-81F9FB67359D}
ELIMINÉ: FirewallRaz (Private) : {FF391844-01F6-42CA-91D8-82F0F6F45940}
ELIMINÉ: FirewallRaz (Public) : {BE260A25-4D69-414C-85BB-710DC7137A8D}
ELIMINÉ: FirewallRaz (Public) : {4875EA8C-5D2B-4AFA-8792-C06D8E557A6B}
ELIMINÉ: FirewallRaz (Public) : {9D193F56-A462-4400-9B8A-D4DA91828D84}
ELIMINÉ: FirewallRaz (Private) : {65B3C844-5473-4ABE-BCAB-5F4C80768024}
ELIMINÉ: FirewallRaz (Public) : {597A4CCE-DD27-4AF4-8C82-B1A669A73C09}
ELIMINÉ: FirewallRaz (Public) : {D1C6BEFD-3287-46BD-BA5E-841942501F01}
ELIMINÉ: FirewallRaz (Public) : {35E8F692-511E-46DD-887C-C6077FBE4C95}
ELIMINÉ: FirewallRaz (Private) : {89824F8F-9395-416B-9CC6-28F0FB4F285A}
ELIMINÉ: FirewallRaz (Private) : {556B0F16-6B5F-4FC4-B4C5-1B870EB37393}
ELIMINÉ: FirewallRaz (Private) : {8828F6F4-DA81-4078-BEBE-E252BFB17400}
ELIMINÉ: FirewallRaz (Public) : {80FBF20D-AEF5-46E6-81E9-AB5678433164}
ELIMINÉ: FirewallRaz (Private) : {5874C0DD-2E74-4F8C-9864-7D5EA78F206B}
ELIMINÉ: FirewallRaz (Private) : {05347A3E-6392-467B-A244-E48584B716A7}
ELIMINÉ: FirewallRaz (Private) : {181D98C2-6599-4396-A8E1-600C1DCB6CF5}
ELIMINÉ: FirewallRaz (Private) : {2FFC6F47-BCF1-4EEA-B41C-58062300185B}
ELIMINÉ: FirewallRaz (Public) : {D0BAFFE0-4E4B-4636-A799-6B8CE57CAAB1}
ELIMINÉ: FirewallRaz (Private) : {6720D4B8-3CF2-4B12-B6D3-DBCFD865AEE9}
ELIMINÉ: FirewallRaz (Private) : {C3BDFA31-E975-48EA-AEFD-291FE24F3D79}
ELIMINÉ: FirewallRaz (Public) : {A3E30759-66EA-4740-953F-3C087D8A8684}
ELIMINÉ: FirewallRaz (Public) : {6B7653B3-DCDC-4679-82AC-F63E188C7B7B}
ELIMINÉ: FirewallRaz (Private) : {C34A82BF-0357-45C6-8912-7DF12A748264}
ELIMINÉ: FirewallRaz (Private) : {C3EA83CD-E4A5-4F03-AB18-3E9484687BD0}
ELIMINÉ: FirewallRaz (Public) : {2B23BF32-E800-4A5E-AC78-3979E78CD029}
ELIMINÉ: FirewallRaz (Private) : {80BF6B19-E339-4BFF-86A5-C752FCF1C425}
ELIMINÉ: FirewallRaz (Private) : {AAA0F220-8F75-400E-B805-C99D02B1F24A}
ELIMINÉ: FirewallRaz (Private) : {707F22EA-C6A6-429B-9957-9EC6456E9783}
ELIMINÉ: FirewallRaz (Public) : {E5A7DE34-93E1-4E9F-A83F-C71456749A08}
ELIMINÉ: FirewallRaz (Private) : {A715D59B-B4F9-4E29-870D-024FAF87416F}
ELIMINÉ: FirewallRaz (Public) : {5632088F-48DE-4E55-BDFE-843463046CA9}
ELIMINÉ: FirewallRaz (Public) : {9513E3BE-D56E-4016-BE80-7574D415FB03}
ELIMINÉ: FirewallRaz (Private) : {573A6350-E3D2-4A22-B556-A0EA47CDC8D5}
ELIMINÉ: FirewallRaz (Private) : {51C67D7E-D692-4B96-8A79-3EE9BD762209}
ELIMINÉ: FirewallRaz (Private) : {69DDEBA6-F447-4853-9841-E09336F7C469}
ELIMINÉ: FirewallRaz (Public) : {076FBE5E-CB59-45A2-A6C5-F4921DB7AF0E}
ELIMINÉ: FirewallRaz (Private) : {D44CD729-2E47-4129-903F-760FEA3E08FA}
ELIMINÉ: FirewallRaz (Public) : {60CEFF59-7C88-4497-83E5-AF94E965D94F}
ELIMINÉ: FirewallRaz (Private) : {7E5A2DB4-1553-4B09-B169-2BD987487C0B}
ELIMINÉ: FirewallRaz (Public) : {57A01B94-0DE2-461A-9F8A-E13ECDB22EFB}
ELIMINÉ: FirewallRaz (Public) : {DCFE9EEE-88B6-43DA-BB87-A4B464A26A83}
ELIMINÉ: FirewallRaz (Public) : {3CC86672-B4B3-4CF4-A902-384D8AA302A2}
ELIMINÉ: FirewallRaz (Public) : {D8E266B6-F1BA-4B5D-892A-5689BEFE462E}
ELIMINÉ: FirewallRaz (Private) : {83A71505-ED64-4BB4-A307-C7E46D075B59}
ELIMINÉ: FirewallRaz (Public) : {8718BE9E-439F-4B84-BBAB-0E8171DC7459}
ELIMINÉ: FirewallRaz (Public) : {569BF373-F485-4097-92A1-9D41D0394BD5}
ELIMINÉ: FirewallRaz (Private) : {92F03DA3-70A4-4C8A-ACA7-2E7C0CA73618}
ELIMINÉ: FirewallRaz (Private) : {90DBB2DB-5522-42BE-AAEB-3E199A65FBA1}
ELIMINÉ: FirewallRaz (Private) : {208A8A80-6D14-448D-AD6D-E8382C855297}
ELIMINÉ: FirewallRaz (Public) : {5C050A72-E60B-4201-A642-96A1F696EC07}
ELIMINÉ: FirewallRaz (Private) : {61B75850-F4F3-495E-A740-7D448A0956B4}
ELIMINÉ: FirewallRaz (Public) : {FD890C22-6AF3-49B4-BC5F-324D946ADD47}
ELIMINÉ: FirewallRaz (Public) : {E8BA917F-0274-447B-A237-A9D05D7AF10D}
ELIMINÉ: FirewallRaz (Private) : {248AD072-5FFF-421F-8610-6F92ED652A76}
ELIMINÉ: FirewallRaz (Private) : {3898A76A-87AE-46AF-A58A-A6BB6B51A17A}
ELIMINÉ: FirewallRaz (Private) : {9DBB3A7A-CE9D-4BF2-9341-1B95B1AF4782}
ELIMINÉ: FirewallRaz (Public) : {79734E51-722D-47EE-92A4-587A0CF16C6C}
ELIMINÉ: FirewallRaz (Private) : {455BBE43-6AF7-41DF-B7E7-D62D85CE06F5}
ELIMINÉ: FirewallRaz (Public) : {69A48EE7-1DEE-4BC4-9A23-5805BCB15C6C}
ELIMINÉ: FirewallRaz (Private) : {E62AD097-ACC2-4475-BAC2-928558056CE4}
ELIMINÉ: FirewallRaz (Private) : {B2A94A6D-9D7F-4505-A999-0AF7BAF58970}
ELIMINÉ: FirewallRaz (Private) : {F7CC4B95-E585-48CF-9F6F-6486ACCB2311}
ELIMINÉ: FirewallRaz (Private) : {0D4DB28B-8B5B-40BF-B986-68E4D2270A8B}
ELIMINÉ: FirewallRaz (Private) : {E09765AD-3D6E-4761-A7B0-E12FAB9A7CF2}
ELIMINÉ: FirewallRaz (Public) : {90FBBFAA-14C2-43D3-85FB-52FDCC6C38BD}
ELIMINÉ: FirewallRaz (Public) : {8FF9CE48-55CD-4DE5-B50F-E56680B5A2E0}
ELIMINÉ: FirewallRaz (Private) : {AF139BB1-FF3C-4CE9-A664-2C8D62C7E366}
ELIMINÉ: FirewallRaz (Public) : {0CA30024-C805-41B0-AAB9-AA81C9F2F74F}
ELIMINÉ: FirewallRaz (Private) : {D42BAFE3-6AB8-4DA3-8CDE-C5EEFB08BD27}
ELIMINÉ: FirewallRaz (Private) : {C15A7EC3-E82F-4D6D-99F2-7703F521982B}
ELIMINÉ: FirewallRaz (Private) : {D90A2026-65A3-4882-9D43-D9EF96B826A0}
ELIMINÉ: FirewallRaz (Public) : {72CFD92C-EE99-42FD-83BF-DBAE6807A2FD}
ELIMINÉ: FirewallRaz (Private) : {F670FE70-3685-4B6E-9003-6AF4C760ED74}
ELIMINÉ: FirewallRaz (Private) : {691CDEAB-85B9-4A77-B946-EC1564E49B32}
ELIMINÉ: FirewallRaz (Private) : {9B2175CF-E714-4144-96C0-98A5F877709C}
ELIMINÉ: FirewallRaz (Private) : {6492279C-A396-45BA-B414-205986DBC846}
ELIMINÉ: FirewallRaz (Public) : {F58B7E37-F1CF-4798-8F42-27E53FF48A68}
ELIMINÉ: FirewallRaz (Public) : {10B9165E-F53D-4067-9708-9BDA39591971}
ELIMINÉ: FirewallRaz (Public) : {D33500C7-BCCA-4366-B27A-1731F07A8F41}
ELIMINÉ: FirewallRaz (Private) : {F0AAEFE0-0FDF-4977-8761-B0EE176C966A}
ELIMINÉ: FirewallRaz (Private) : {878839A8-A27E-45BB-ABAB-0170C9DC6356}
ELIMINÉ: FirewallRaz (Public) : {4FD29307-EEC9-4B9C-A962-760DA0DBC5B1}
ELIMINÉ: FirewallRaz (Public) : {ACD6C5B2-BAA5-4500-9343-4D3869C803F1}
ELIMINÉ: FirewallRaz (Private) : {5CB76E97-F9B9-4663-B301-31CF742C0D9E}
ELIMINÉ: FirewallRaz (Private) : {F95A92C9-DF0D-4632-A968-50D12A103FDC}
ELIMINÉ: FirewallRaz (Private) : {642AE401-8AFB-47CD-B3A7-6C48F51AAABF}
ELIMINÉ: FirewallRaz (Private) : {0F7222B5-2785-4AEE-BB71-2B441F7BA3EA}
ELIMINÉ: FirewallRaz (Public) : {813AA3C9-3B4A-488E-B871-DF123B676B40}
ELIMINÉ: FirewallRaz (Public) : {7FC46EEC-91DF-45F0-945B-1929E9542A76}
ELIMINÉ: FirewallRaz (Public) : {0A388DE5-A98F-48E8-BF3F-DEAC9CB56756}
ELIMINÉ: FirewallRaz (Public) : {02F5B3BA-036F-48B4-AB25-9F4E7331A0DF}
ELIMINÉ: FirewallRaz (Private) : {D2FA061E-AE80-448B-A655-73F8D63DE087}
ELIMINÉ: FirewallRaz (Public) : {DD538CDE-EDCD-4104-B726-BB5838BF26AA}
ELIMINÉ: FirewallRaz (Public) : {FE58A247-DE4A-4C73-AC37-5DC85D140781}
ELIMINÉ: FirewallRaz (Public) : {84443F71-0A21-4859-ABEE-BEC4AE203CBC}
ELIMINÉ: FirewallRaz (Public) : {A74872B3-32AB-4146-8EDD-2D3C71934281}
ELIMINÉ: FirewallRaz (Public) : {1A3C6B1A-EE17-4184-B3C5-E13D7B7CF2B0}
ELIMINÉ: FirewallRaz (Public) : {8CDEB68E-2980-4025-A6F2-FD41C557AEB6}
ELIMINÉ: FirewallRaz (Public) : {1D156B94-8FF9-46CF-B54B-8A1DF4E63FEF}
ELIMINÉ: FirewallRaz (Private) : {B5BDF51F-5C8B-41D5-B529-F57C27B869B9}
ELIMINÉ: FirewallRaz (Public) : {5A71FE56-8B75-431D-A906-3093FA5DAF25}
ELIMINÉ: FirewallRaz (Public) : {23BC4883-89F6-44DC-8FBB-2782B4AA8BA3}
ELIMINÉ: FirewallRaz (Public) : {0BD69E9F-0757-4403-8C41-ACD6156F3117}
ELIMINÉ: FirewallRaz (Public) : {CA0E88A6-F029-424C-9500-C691AEC880B4}
ELIMINÉ: FirewallRaz (Private) : {E8608D88-3209-489D-9806-4352AA2A830E}
ELIMINÉ: FirewallRaz (Public) : {AE59A1F0-4A79-46AF-8E1B-866C4CCE25B6}
ELIMINÉ: FirewallRaz (Public) : {10D0CB2A-7AF2-4CC6-85CE-07BDFFB2D647}
ELIMINÉ: FirewallRaz (Public) : {A1F28F78-B956-4D1C-813E-B57ECA393599}
ELIMINÉ: FirewallRaz (Public) : {43E18002-F01C-49DE-9375-0968536D0343}
ELIMINÉ: FirewallRaz (Public) : {7705FE4A-EE80-4D5D-9731-2F170A9B874C}
ELIMINÉ: FirewallRaz (Public) : {D7A2C9B6-4158-4ADE-952E-9B37F4DEC2A5}
ELIMINÉ: FirewallRaz (Public) : {9B8F1623-6F86-4510-8D28-01863C4AACD0}
ELIMINÉ: FirewallRaz (Public) : {E3CBB4F8-22F1-4A3D-A1D5-8740AC641983}
ELIMINÉ: FirewallRaz (Public) : {644A5CA9-5628-456F-AC31-D632B8BD5AEF}
ELIMINÉ: FirewallRaz (Public) : {210C407E-D4E3-461B-A84C-8820262CAC1B}
ELIMINÉ: FirewallRaz (Public) : {B8D42EFA-1FB6-4934-8FB7-0979CAE0377A}
ELIMINÉ: FirewallRaz (Public) : {797CD7A8-B7FF-4E87-A9C2-55E2D666AAC0}
ELIMINÉ: FirewallRaz (Public) : {D320A904-C96D-4A9F-8B17-511AF8168ECB}
ELIMINÉ: FirewallRaz (Public) : {2D51D785-12E1-46DC-AF1E-BD5F9FB7A559}
ELIMINÉ: FirewallRaz (Private) : {F4223A0D-2442-40AE-B5A5-70508D852F8F}
ELIMINÉ: FirewallRaz (Public) : {05ADDFB1-BD86-4F3D-8895-DD57BF9EC1DE}
ELIMINÉ: FirewallRaz (Private) : {EA15AADF-0A0B-4460-B4B5-4069FD364450}
ELIMINÉ: FirewallRaz (Public) : {37BE7BBA-FDD9-4867-B18D-A7F0B3787D7A}
ELIMINÉ: FirewallRaz (Public) : {08251AFF-56E9-4F8E-8579-9992A042D746}
ELIMINÉ: FirewallRaz (Public) : {726E22C4-20FF-4490-B85B-8FE1282712E9}
ELIMINÉ: FirewallRaz (Public) : {2F5D69B2-4C68-402E-9176-0FC0140CD5CD}
ELIMINÉ: FirewallRaz (Public) : {AFCA21ED-A20B-4E49-9D0E-8F33B7D5A18A}
ELIMINÉ: FirewallRaz (Public) : {58510D29-DEB1-455E-8C55-D08E0CF9C47D}
ELIMINÉ: FirewallRaz (Public) : {6DD5949C-9C61-484F-896D-85314A320E19}
ELIMINÉ: FirewallRaz (Public) : {B787DF6E-A5F6-478B-8556-51ACF706BFB6}
ELIMINÉ: FirewallRaz (Public) : {E0257EF2-BD1E-40C4-83C1-C15C25AF3642}
ELIMINÉ: FirewallRaz (Public) : {6E24B226-6198-4C6F-BF89-BDB57BC5D641}
ELIMINÉ: FirewallRaz (Public) : {738E6E80-E57F-4677-8FA2-DE243350D19E}
ELIMINÉ: FirewallRaz (Public) : {64027396-A627-4AF3-A23C-9BD5E8A49049}
ELIMINÉ: FirewallRaz (Public) : {D46974A1-3E76-4A4F-A9DC-A3AA168C37E3}
ELIMINÉ: FirewallRaz (Public) : {9B12CEB3-5000-4156-9ECC-1D35ADFD9B00}
ELIMINÉ: FirewallRaz (Public) : {BAA79890-222A-4D39-86C1-F5A6102523CF}
ELIMINÉ: FirewallRaz (Public) : {D70D0E5B-F193-4149-A662-33CF6035D8E5}
ELIMINÉ: FirewallRaz (Public) : {AB94CE0B-0B0C-4218-8131-253328985F79}
ELIMINÉ: FirewallRaz (Public) : {B8275CF7-C875-4997-90C0-A5AD31942EE6}
ELIMINÉ: FirewallRaz (Public) : {6EF79C11-BA13-425F-8387-22F47DC9643B}
ELIMINÉ: FirewallRaz (Public) : {0AC6BB14-2770-4F6C-B092-5218CFF7226E}
ELIMINÉ: FirewallRaz (Public) : {F944259E-BADA-47C2-A7B3-276E19C3708F}
ELIMINÉ: FirewallRaz (Public) : {AB30E377-C785-4282-9B9B-0B08D3784F84}
ELIMINÉ: FirewallRaz (Public) : {A4EEDD0C-7C9F-428B-BEB7-8B5B2F0D612B}
ELIMINÉ: FirewallRaz (Private) : {E37BBEB3-ED47-4253-B4C0-A09768935145}
ELIMINÉ: FirewallRaz (Public) : {4F8235D2-C39E-4823-9D67-D10FF0F7B13C}
ELIMINÉ: FirewallRaz (Public) : {D8253710-FEA6-49A5-B42D-CF5865971B8A}
ELIMINÉ: FirewallRaz (Public) : {94E08513-2A20-4593-9E3B-C86E0634DBE8}
ELIMINÉ: FirewallRaz (Public) : {6AC83400-4A07-4E36-BC7F-AD8A261D3C91}
ELIMINÉ: FirewallRaz (Private) : {25338921-3F9A-464D-B941-314CB97435FF}
ELIMINÉ: FirewallRaz (Public) : {2CBE56CE-D951-4BF5-BF35-C5BF25BB4DF3}
ELIMINÉ: FirewallRaz (Private) : {8A86840E-AC75-4177-A19C-F044B4EC9388}
ELIMINÉ: FirewallRaz (Public) : {B985B7EA-649D-453D-B87C-9B15497A0AFD}
ELIMINÉ: FirewallRaz (Public) : {D06581D3-76E0-4C0F-AE02-D1D9C6727411}
ELIMINÉ: FirewallRaz (Public) : {1B253431-AF98-443A-A350-3F9961F7F83A}
ELIMINÉ: FirewallRaz (Public) : {54B1BCE7-3228-4A1B-B92B-E6D1490ECF0B}
ELIMINÉ: FirewallRaz (Public) : {4625523C-7A0A-4F83-A568-EAA8A597F6CD}
ELIMINÉ: FirewallRaz (Public) : {05AAD399-4F4C-44C9-BB9B-105A55498284}
ELIMINÉ: FirewallRaz (Public) : {67DCF3B9-20EF-404C-A4C0-7C85A597B5F7}
ELIMINÉ: FirewallRaz (Public) : {41D063D8-DCD4-4FA4-A9E4-66DADD63B12E}
ELIMINÉ: FirewallRaz (Public) : {22C69872-D4A1-4EDA-A255-BD08503AC78D}
ELIMINÉ: FirewallRaz (Public) : {13522DE8-0FE5-44B4-9E21-C7993D32819D}
ELIMINÉ: FirewallRaz (Public) : {806D89AF-A67B-4B39-B9E3-2910F99EB88A}
ELIMINÉ: FirewallRaz (Public) : {FA2F96B2-06D6-46A5-8C9A-E8917B77101A}
ELIMINÉ: FirewallRaz (Public) : {3265F3A0-957F-4E14-8FBE-B1C02AEBFBDA}
ELIMINÉ: FirewallRaz (Public) : {7B2EDCE7-2718-44EA-ADAE-C6B32542F466}
ELIMINÉ: FirewallRaz (Public) : {449182B7-645B-48B5-B54D-48E75C6A3B8B}
ELIMINÉ: FirewallRaz (Private) : {EB99236E-3841-455A-843A-B280D476C82C}
ELIMINÉ: FirewallRaz (Private) : {A3EB00B1-AC1A-4883-B384-EF164F7E92CD}
ELIMINÉ: FirewallRaz (Public) : {7D9906D4-589A-41DF-949A-7D27F5A4C1E4}
ELIMINÉ: FirewallRaz (Private) : {F5369BE0-83FF-41D7-B8D5-A1433012A937}
ELIMINÉ: FirewallRaz (Public) : {86FDE202-2F25-4BB3-A3FD-6BAA1ADEACAB}
ELIMINÉ: FirewallRaz (Public) : {27562757-5340-440E-A958-4F195602BA05}
ELIMINÉ: FirewallRaz (Private) : {93932577-6571-423D-9603-AEB0D097351F}
ELIMINÉ: FirewallRaz (Public) : {4D0B2778-C614-4756-AE54-9AF8C8994376}
ELIMINÉ: FirewallRaz (Public) : {3B62C9EE-8179-4AE5-9306-6C0A9C4989B6}
ELIMINÉ: FirewallRaz (Public) : {FCDED4F9-6C7A-46BB-9FB0-97D804F03FD8}
ELIMINÉ: FirewallRaz (Public) : {83789543-CAEF-410E-931E-168CD8E94AA6}
ELIMINÉ: FirewallRaz (Private) : {24727912-CEA2-4D76-9955-750CFE2A0058}
ELIMINÉ: FirewallRaz (Public) : {AD22EF81-A0DC-49EF-B978-9B72D964184C}
ELIMINÉ: FirewallRaz (Public) : {5292CFC6-5DC6-47A9-829A-D3411013D12F}
ELIMINÉ: FirewallRaz (Public) : {83128EB4-0089-43E6-9378-CD1259AAD3E8}
ELIMINÉ: FirewallRaz (Private) : {4B0F6671-8966-419A-A1A1-AAA971574A34}
ELIMINÉ: FirewallRaz (Public) : {F6046877-6293-4372-951D-1BC5BF600C0D}
ELIMINÉ: FirewallRaz (Public) : {C66DB2EF-70C5-46F8-8146-454E3F33576F}
ELIMINÉ: FirewallRaz (Private) : {54EE7951-B376-4645-9EDD-95C9109E2032}
ELIMINÉ: FirewallRaz (Public) : {B4B68FFB-A3CB-4B38-93A2-4D5F4AD79C83}
ELIMINÉ: FirewallRaz (Public) : {F270C1DD-0CEC-4121-9FA6-2B22C08CE787}
ELIMINÉ: FirewallRaz (Private) : {BB9960E0-F83D-456E-9DD7-30A25BA324F7}
ELIMINÉ: FirewallRaz (Public) : {3DA7297A-2C86-435E-A43A-2C96F1806064}
ELIMINÉ: FirewallRaz (Public) : {2451F568-0F7B-4EA4-B362-9A992447E652}
ELIMINÉ: FirewallRaz (Public) : {170BD2BF-7908-4CDC-8BAA-392C8CF0AC35}
ELIMINÉ: FirewallRaz (Private) : {B3A01241-9C0E-46C0-AF84-B0AD788E465A}
ELIMINÉ: FirewallRaz (Private) : {AEC32505-BF52-41E1-9146-F2426B6C390E}
ELIMINÉ: FirewallRaz (Private) : {FCC543EF-79FB-43D1-95EF-CA9176B074FD}
ELIMINÉ: FirewallRaz (Public) : {F69C5B61-06DC-46BD-AB0B-644F2F005CB3}
ELIMINÉ: FirewallRaz (Public) : {379F0B90-7CC5-4F56-B1E4-86DED113EC51}
ELIMINÉ: FirewallRaz (Public) : {AC97232E-A496-46D7-9DF6-5E868C589590}
ELIMINÉ: FirewallRaz (Public) : {FBA2D864-0B69-485B-B5CA-8D4F19675D14}
ELIMINÉ: FirewallRaz (Private) : {AEC1A926-2257-4327-B622-1CB91565E901}
ELIMINÉ: FirewallRaz (Public) : {0990E53D-B82F-4D4C-8D9B-E5AAC680E2E1}
ELIMINÉ: FirewallRaz (Public) : {A0661DD4-DC69-492B-9C43-C1F904086C09}
ELIMINÉ: FirewallRaz (Public) : {AA4C6A99-070E-4A53-AE0F-4D38DAED3F39}
ELIMINÉ: FirewallRaz (Public) : {E35C4B38-D62D-4908-A372-4AC22B8935F0}
ELIMINÉ: FirewallRaz (Public) : {31D21353-3E68-4703-8BC8-6A3C704F7EA3}
ELIMINÉ: FirewallRaz (Public) : {A1C15AB0-EB24-4206-BE26-A354C216AFF0}
ELIMINÉ: FirewallRaz (Public) : {36AAADD9-3D65-446E-B2D2-C56567640461}
ELIMINÉ: FirewallRaz (Public) : {25FBB81A-82D0-4EFC-9038-6D3FCE9A36CF}
ELIMINÉ: FirewallRaz (Public) : {2BDA0F1D-7A44-4DA6-87FE-DAC6A97BBAA8}
ELIMINÉ: FirewallRaz (Public) : {EA5C543D-CD33-4B2C-B42B-DAF954A0C3BE}
ELIMINÉ: FirewallRaz (Public) : {DA1F6C87-B832-4A05-A638-A5FA10A63047}
ELIMINÉ: FirewallRaz (Public) : {66939827-22CA-4ABA-9B04-6DA15F1574D9}
ELIMINÉ: FirewallRaz (Public) : {1A553C15-7820-495A-B59A-31A27F839E7B}
ELIMINÉ: FirewallRaz (Public) : {CFE13F10-D9CF-4372-89C7-625344E4E52B}
ELIMINÉ: FirewallRaz (Public) : {735CDB32-1346-439D-850A-DA882C09D554}
ELIMINÉ: FirewallRaz (Public) : {8EB41C1F-EEDB-482E-8BA7-68B5A95E71F7}
ELIMINÉ: FirewallRaz (Public) : {E5E6E4E5-3A18-41AF-AD77-4FCF536EDFC6}
ELIMINÉ: FirewallRaz (Public) : {68655672-F338-45F6-B39F-7BC6DEB08132}
ELIMINÉ: FirewallRaz (Public) : {88A7E09A-0853-47AD-8B71-1085C4D624CA}
ELIMINÉ: FirewallRaz (Public) : {4551BA17-67D3-4CB4-8668-CFEB66758479}
ELIMINÉ: FirewallRaz (Private) : {945502D2-9300-4EAB-A43B-A883CBF118CE}
ELIMINÉ: FirewallRaz (Public) : {18AC9E60-C7AA-48F0-8279-7A1E48F1EEC4}
ELIMINÉ: FirewallRaz (Public) : {4404CA57-DA3F-40D0-A110-FC1CCF95DD62}
ELIMINÉ: FirewallRaz (Public) : {81119712-B3F7-4A5F-BC26-BF558E99FF02}
ELIMINÉ: FirewallRaz (Private) : {03425C8D-BA28-4E32-95E5-02F04B18906B}
ELIMINÉ: FirewallRaz (Private) : {6E2786DC-A271-4015-9AD4-ACDCDAC2594C}
ELIMINÉ: FirewallRaz (Private) : {95C451DE-64B5-48B2-BC00-508B1D2F0F45}
ELIMINÉ: FirewallRaz (Public) : {744B41A3-681C-4D05-8D43-B4AFEE131FE8}
ELIMINÉ: FirewallRaz (Private) : {48697FCE-9A0B-4BD5-BA6F-2C2AF32B61BD}
ELIMINÉ: FirewallRaz (Public) : {F56C6F4D-01C3-417C-A0B5-A086E623BFA9}
ELIMINÉ: FirewallRaz (Private) : {F982AC4A-24FE-4971-89A3-4EF87591383E}

========== Elementos dos dados do Registo ==========
SUBSTITUI Value Start_ShowMyGames : Good (1) - Bad (0)
ELIMINÉ: R0 - Main,Start Page = KCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page
ELIMINÉ: R1 Search Page =

========== Pastas ==========
Nenhuma pasta CLSID local utilizador vazia

========== Ficheiros ==========
ELIMINÉ:* c:\users\admin\appdata\local\filesfrog update checker\update_checker.exe
ELIMINÉ: c:\users\public\desktop\mcafee security scan plus.lnk
ELIMINÉ: c:\program files\mcafee security scan\3.8.130\mcuicnt.exe
ELIMINÉ: c:\users\admin\appdata\roaming\microsoft\internet explorer\quick launch\dll-files fixer.lnk
ELIMINÉ: c:\users\admin\appdata\roaming\microsoft\internet explorer\quick launch\hao123.lnk
ELIMINÉ: c:\users\admin\appdata\roaming\microsoft\internet explorer\quick launch\portaldosites.lnk
ELIMINÉ: c:\users\admin\appdata\roaming\microsoft\internet explorer\quick launch\user pinned\taskbar\mobogenie.lnk
ELIMINÉ: c:\programdata\microsoft\windows\start menu\programs\startup\mcafee security scan plus.lnk
ELIMINA REINICIAR: c:\program files\mcafee security scan\3.8.130\ssscheduler.exe
ELIMINA REINICIAR: c:\users\admin\appdata\local\akamai\netsession_win.exe
ELIMINÉ: c:\windows\tasks\amiupdxp.job
ELIMINÉ: c:\adsa811.tmp
ELIMINÉ: c:\adsa822.tmp
ELIMINA REINICIAR: c:\windows\system32\drivers\bfilter.sys
ELIMINA REINICIAR: c:\windows\system32\drivers\bfmon.sys
ELIMINA REINICIAR: c:\windows\system32\drivers\bprotect.sys
ELIMINÉ: c:\program files\mcafee security scan\3.8.130\mcchsvc.exe
ELIMINÉ Temporários windows (175) (59.014.021 octets)
ELIMINÉ Flash Cookies (0) (0 octets)

========== Tarefa planificada ==========
ELIMINÉ: AmiUpdXp
ELIMINÉ: AmiUpdXp
ELIMINÉ: SomotoUpdateCheckerAutoStart
ELIMINÉ: WinZipDriverUpdaterRunAtStartup
ELIMINÉ: WinZipDriverUpdater_UPDATES

========== Restauração Sistema ==========
Ponto de restauro do sistema criado com sucesso

========== Outros ==========
NÃO-TRATADO McAfee Security Scan Plus v3.8.130.10


========== Recapitulativo ==========
10 : Processo memória
89 : Chaves do Registo
411 : Valores do Registo
3 : Elementos dos dados do Registo
1 : Pastas
19 : Ficheiros
1 : Softwares
3 : Estado dos serviços
5 : Tarefa planificada
1 : Restauração Sistema
1 : Outros


End of clean in 01mn 35s

========== Caminho do ficheiro do relatório ==========
C:\Users\admin\AppData\Roaming\ZHP\ZHPFix[R1].txt - 27/01/2014 19:05:06 [43930]
Pedro Silva
Pedro Silva
Iniciante
Iniciante

Mensagens : 8
Reputação : 0
Data de inscrição : 11/01/2014

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Power Max Seg 27 Jan 2014, 19:17

isso aí!  Vários problemas foram removidos.

Uso de CPU chega a 100% 772309 Como está seu PC após estas limpezas?
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Pedro Silva Ter 28 Jan 2014, 13:56

Ta muito bom ele esta rodando bem todos os programas principalmente os videos e o browser.Agradeço por ter me ajudado.Que Deus te abençoe e um bom Oh!!!Long Johnson rs rs.
Pedro Silva
Pedro Silva
Iniciante
Iniciante

Mensagens : 8
Reputação : 0
Data de inscrição : 11/01/2014

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Power Max Ter 28 Jan 2014, 14:35

isso aí!  Fico feliz que o problema tenha sido resolvido.

Só para finalizar faça estes últimos procedimentos, por gentileza:

Uso de CPU chega a 100% 772309 Instale o [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] (caso já tenha ele, não precisa instalar de novo).

Abra o Ccleaner > clique no botão Limpeza > clique na opção Executar Limpeza. Isto é demonstrado na imagem abaixo:

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

Confirme a operação acima clicando no botão OK. Aguarde a conclusão do procedimento.

Depois disto, clique no botão botão Registro > Procurar Erros > Corrigir erro(s) selecionado(s) > neste momento você poderá optar por fazer uma cópia das alterações que serão feitas no registro (por motivos de segurança), escolha a opção que desejar (sim ou não) > e confirme a limpeza clicando no botão Corrigir todos os erros selecionados > clique no botão Fechar (ou OK):

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]
__________________________________________________________

Uso de CPU chega a 100% 772309 Depois disto siga também as dicas deste tutorial abaixo:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
___________________________________

Uso de CPU chega a 100% 772309  Para remover os programas usados na limpeza deste PC e criar um novo ponto de restauração seguro e sem problemas, baixe o [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] (...de Xplode) e salve no Desktop (Área de Trabalho)

*Depois disto é só executá-lo, deixar selecionadas as opções  Remove disinfection tools e Purge system restore

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Clique em [Run]

Depois de executar o Delfix conforme descrito acima, é só deletar o DelFix e o arquivo C:\DelFix.txt

 Uso de CPU chega a 100% 960671  Foi um prazer ajudar, conte sempre conosco!
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Power Max Ter 28 Jan 2014, 14:36

CASO RESOLVIDO

Caso o autor do tópico necessite, o mesmo será reaberto, para isso deverá entrar em contato com um dos membros da [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] solicitando o desbloqueio.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Uso de CPU chega a 100% Empty Re: Uso de CPU chega a 100%

Mensagem por Conteúdo patrocinado


Conteúdo patrocinado


Ir para o topo Ir para baixo

Ir para o topo


 
Permissões neste sub-fórum
Não podes responder a tópicos